CVE-2022-41544
41Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendcvss 8.8epss 9.8%
from disclosure to weapon209 days
Published on NVDOct 18
1st PoC+209d
exploitation probability
9.8%top 5% of all CVEs
observed exploitation
nono source reports it
4 public exploit(s)
GetSimple CMS v3.3.16 was discovered to contain a remote code execution (RCE) vulnerability via the edited_file parameter in admin/theme-edit.php.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
n/a · n/apublic PoCs found — 4✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/51475githubgithub.com/yosef0x01/CVE-2022-41544★ 1githubgithub.com/h3x0v3rl0rd/CVE-2022-41544★ 0cve_referencepacketstormsecurity.com/files/172553/GetSimple-CMS-3.3.16-Shell-Upload.htmlunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.