PT-2026-21327 · Unknown · Getsimple Cms

August829

·

Published

2026-02-20

·

Updated

2026-02-21

·

CVE-2026-27202

CVSS v4.0

8.8

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions GetSimple CMS (affected versions not specified)
Description GetSimple CMS has a flaw in the Uploaded Files feature that allows for arbitrary file reads. This issue has not been fixed as of the time of publication. The vulnerability allows unauthorized access to arbitrary files.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Relative Path Traversal

Weakness Enumeration

Related Identifiers

CVE-2026-27202
GHSA-XHWV-G6Q4-H886

Affected Products

Getsimple Cms