PT-2018-14955 · Getsimple · Getsimple Cms

Hexifeo

·

Published

2018-11-21

·

Updated

2018-12-28

·

CVE-2018-19421

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions GetSimpleCMS version 3.3.15
Description The issue concerns the upload functionality in GetSimpleCMS, where the admin/upload.php blocks uploads of .html files, but Internet Explorer can still render HTML elements in a .eml file. This is due to the admin/upload-uploadify.php and the validate safe file function in admin/inc/security functions.php.
Recommendations For GetSimpleCMS version 3.3.15, consider restricting the upload of .eml files or disabling the upload-uploadify.php functionality until a proper fix is available. Additionally, review and modify the validate safe file function in admin/inc/security functions.php to properly handle file type validation and prevent potential HTML rendering in unauthorized file types.

Exploit

Fix

Unrestricted File Upload

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-19421

Affected Products

Getsimple Cms