Medium severity6.5NVD Advisory· Published Jan 21, 2026· Updated Jun 17, 2026
CVE-2021-47830
CVE-2021-47830
Description
GetSimple CMS My SMTP Contact Plugin 1.1.1 contains a cross-site request forgery (CSRF) vulnerability. Attackers can craft a malicious webpage that, when visited by an authenticated administrator, can change SMTP configuration settings in the plugin. This may allow unauthorized changes but does not directly enable remote code execution.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: = 1.1.1
- cpe:2.3:a:get-simple:getsimplecms:1.1.1:*:*:*:*:*:*:*
- Range: <=1.1.1
Patches
Vulnerability mechanics
References
4- www.exploit-db.com/exploits/49774nvdExploitThird Party AdvisoryVDB Entry
- www.exploit-db.com/exploits/49798nvdExploitThird Party AdvisoryVDB Entry
- www.vulncheck.com/advisories/getsimple-cms-my-smtp-contact-plugin-csrfnvdThird Party Advisory
- get-simple.infonvdProduct
News mentions
0No linked articles in our index yet.