Remote Code Execution vulnerability in GetSimpleCMS prior to 3.3.16 in admin/upload.php via phar filess.
get-simple getsimplecms