3.5
CVSSv2

CVE-2019-11226

Published: 05/06/2019 Updated: 05/06/2019
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

CMS Made Simple 2.2.10 has XSS via the m1_name parameter in "Add Article" under Content -> Content Manager -> News.

Vulnerability Trend

Affected Products

Vendor Product Versions
CmsmadesimpleCms Made Simple2.2.10

Mailing Lists

CMS Made Simple version 2210 suffers from a persistent cross site scripting vulnerability ...
============================================= MGC ALERT 2019-002 - Original release date: April 10, 2019 - Last revised: May 22, 2019 - Discovered by: Manuel Garcia Cardenas - Severity: 4,8/10 (CVSS Base Score) - CVE-ID: CVE-2019-11226 ============================================= I VULNERABILITY ------------------------- CMS Made Simple 2210 ...