CVE

Id
76091  
CVE No.
CVE-2014-8790  
Status
Candidate  
Description
XML external entity (XXE) vulnerability in admin/api.php in GetSimple CMS 3.1.1 through 3.3.x before 3.3.5 Beta 1, when in certain configurations, allows remote attackers to read arbitrary files via the data parameter.  
Phase
Assigned (20141113)  
Votes
None (candidate not yet proposed)  
Comments