cve/2014/CVE-2014-8790.md
2024-06-18 02:51:15 +02:00

787 B

CVE-2014-8790

Description

XML external entity (XXE) vulnerability in admin/api.php in GetSimple CMS 3.1.1 through 3.3.x before 3.3.5 Beta 1, when in certain configurations, allows remote attackers to read arbitrary files via the data parameter.

POC

Reference

Github

No PoCs found on GitHub currently.