Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2016-2784

CMS Made Simple 2.x before 2.1.3 and 1.x before 1.12.2, when Smarty Cache is activated, allow remote attackers to conduct cache poisoning attacks, modify links, and conduct cross-site scripting (XSS) attacks via a crafted HTTP Host header in a request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.061
EPSS Ranking 90.3%
CVSS Severity
CVSS v3 Score 4.7
CVSS v2 Score 2.6
Products affected by CVE-2016-2784


Contact Us

Shodan ® - All rights reserved