CyberRota Analysis
AI analysis pending.
CVE
CVE-2019-9056
Severity
HIGH
CVSS
8.8
EPSS
1.27%
Original NVD Description
An issue was discovered in CMS Made Simple 2.2.8. In the module FrontEndUsers (in the file class.FrontEndUsersManipulate.php or class.FrontEndUsersManipulator.php), it is possible to reach an unserialize call with an untrusted __FEU__ cookie, and achieve authenticated object injection.