CVE

Id
76023  
CVE No.
CVE-2014-8722  
Status
Candidate  
Description
GetSimple CMS 3.3.4 allows remote attackers to obtain sensitive information via a direct request to (1) data/users/<username>.xml, (2) backups/users/<username>.xml.bak, (3) data/other/authorization.xml, or (4) data/other/appid.xml.  
Phase
Assigned (20141110)  
Votes
None (candidate not yet proposed)  
Comments