CVE-2024-55086

In the GetSimple CMS CE 3.3.19 management page, Server-Side Request Forgery (SSRF) can be achieved in the plug-in download address in the backend management system.
Configurations

Configuration 1 (hide)

cpe:2.3:a:getsimple-ce:getsimple_cms:3.3.19:*:*:*:community:*:*:*

History

18 Apr 2025, 17:25

Type Values Removed Values Added
References () https://getsimple-ce.ovh/ - () https://getsimple-ce.ovh/ - Product
References () https://tasteful-stamp-da4.notion.site/CVE-2024-55086-15b1e0f227cb80e4bf4ed76aac53f795 - () https://tasteful-stamp-da4.notion.site/CVE-2024-55086-15b1e0f227cb80e4bf4ed76aac53f795 - Broken Link
First Time Getsimple-ce getsimple Cms
Getsimple-ce
CPE cpe:2.3:a:getsimple-ce:getsimple_cms:3.3.19:*:*:*:community:*:*:*
Summary
  • (es) En la página de administración de GetSimple CMS CE 3.3.19, se puede lograr Server-Side Request Forgery (SSRF) en la dirección de descarga del complemento en el sistema de administración de backend.

18 Dec 2024, 19:15

Type Values Removed Values Added
References () https://tasteful-stamp-da4.notion.site/CVE-2024-55086-15b1e0f227cb80e4bf4ed76aac53f795 - () https://tasteful-stamp-da4.notion.site/CVE-2024-55086-15b1e0f227cb80e4bf4ed76aac53f795 -
CWE CWE-918
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.2

18 Dec 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-18 17:15

Updated : 2025-04-18 17:25


NVD link : CVE-2024-55086

Mitre link : CVE-2024-55086

CVE.ORG link : CVE-2024-55086


JSON object : View

Products Affected

getsimple-ce

  • getsimple_cms
CWE
CWE-918

Server-Side Request Forgery (SSRF)