cve/2014/CVE-2014-8722.md
2024-05-26 14:27:05 +02:00

751 B

CVE-2014-8722

Description

GetSimple CMS 3.3.4 allows remote attackers to obtain sensitive information via a direct request to (1) data/users/.xml, (2) backups/users/.xml.bak, (3) data/other/authorization.xml, or (4) data/other/appid.xml.

POC

Reference

Github