High severity8.8NVD Advisory· Published Apr 30, 2017· Updated May 13, 2026
CVE-2017-8081
CVE-2017-8081
Description
Poor cryptographic salt initialization in admin/inc/template_functions.php in GetSimple CMS 3.3.13 allows a network attacker to escalate privileges to an arbitrary user or conduct CSRF attacks via calculation of a session cookie or CSRF nonce.
Affected products
1- cpe:2.3:a:cagintranetworks:getsimple_cms:3.3.13_:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- github.com/GetSimpleCMS/GetSimpleCMS/issues/1224nvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.