Critical Unauthenticated RCE in GetSimple CMS – Full CVE Breakdown πŸ”

Discover the details of the recent GetSimple CMS vulnerability allowing remote code execution without authentication. Read our comprehensive analysis and stay informed on the latest security updates. Full advisory here: https://ssd-disclosure.com/ssd-advi

Critical Unauthenticated RCE in GetSimple CMS – Full CVE Breakdown πŸ”
ssd-secure-disclosure
3.2K views β€’ Feb 25, 2022
Critical Unauthenticated RCE in GetSimple CMS – Full CVE Breakdown πŸ”

About this video

You can find our full advisory here:
https://ssd-disclosure.com/ssd-advisory-getcms-unauthenticated-remote-code-execution/

Keep up with the latest updates:
https://ssd-disclosure.com/
https://twitter.com/SecuriTeam_SSD
https://www.facebook.com/ssdsecuredisclosure

SSD Secure Disclosure and PinkDraconian bring you a Deep Dive into some of the vulnerabilities reported to SSD through our vulnerability disclosure program. In this video, we discuss an old vulnerability in GetSimple CMS that allows unauthenticated attackers to perform remote code execution.

Check out Robbe's channel:
https://www.youtube.com/c/PinkDraconian

00:00 Introduction
00:18 What is GetSimple CMS?
00:42 Authenticated Remote Code Execution
02:00 Information disclosure
03:30 Crafting valid session tokens
04:50 Recap
05:30 Outro

Tags and Topics

Browse our collection to discover more content in these categories.

Video Information

Views

3.2K

Likes

55

Duration

5:49

Published

Feb 25, 2022

User Reviews

4.5
(3)
Rate:

Related Trending Topics

LIVE TRENDS

Related trending topics. Click any trend to explore more videos.