High severity7.8NVD Advisory· Published Jan 2, 2018· Updated Jun 17, 2026
CVE-2017-1000454
CVE-2017-1000454
Description
CMS Made Simple 2.1.6, 2.2, 2.2.1 are vulnerable to Smarty Template Injection in some core components, resulting in local file read before 2.2, and local file inclusion since 2.2.1
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <=2.2.1
Patches
Vulnerability mechanics
References
1- www.cmsmadesimple.org/2017/07/Announcing-CMSMS-2.2.2-Hearts-ContentnvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.