CVE-2020-18191: Get-Simple Getsimplecms

Critical severity, CVSS 9.1. EPSS: 2.1% chance of exploitation in the next 30 days.

GetSimpleCMS-3.3.15 is affected by directory traversal. Remote attackers are able to delete arbitrary files via /GetSimpleCMS-3.3.15/admin/log.php

Affected products

Published 2020-10-02. Last modified 2026-06-17.