Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-9059

An issue was discovered in CMS Made Simple 2.2.8. It is possible, with an administrator account, to achieve command injection by modifying the path of the e-mail executable in Mail Settings, setting "sendmail" in the "Mailer" option, and launching the "Forgot your password" feature.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.049
EPSS Ranking 89.2%
CVSS Severity
CVSS v3 Score 7.2
CVSS v2 Score 6.5
Products affected by CVE-2019-9059


Contact Us

Shodan ® - All rights reserved