CVE-2023-36969: Cmsmadesimple CMS Made Simple

High severity, CVSS 8.8. EPSS: 49.3% chance of exploitation in the next 30 days.

CMS Made Simple v2.2.17 is vulnerable to Remote Command Execution via the File Upload Function.

Affected products

Published 2023-07-06. Last modified 2026-06-17.