Medium severity5.4NVD Advisory· Published Oct 20, 2023· Updated Jun 17, 2026
CVE-2023-43356
CVE-2023-43356
Description
Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a crafted script to the Global Meatadata parameter in the Global Settings Menu component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:cmsmadesimple:cms_made_simple:2.2.18:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:cmsmadesimple:cms_made_simple:2.2.18:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: =2.2.18
Patches
Vulnerability mechanics
News mentions
0No linked articles in our index yet.