Poor cryptographic salt initialization in admin/inc/template_functions.php in GetSimple CMS 3.3.13 allows a network attacker to escalate privileges to an arbitrary user or conduct CSRF attacks via calculation of a session cookie or CSRF nonce.
{ "source": "CPE_STRING", "extracted_events": [ { "introduced": "3.3.13_" }, { "last_affected": "3.3.13_" } ], "cpe": "cpe:2.3:a:cagintranetworks:getsimple_cms:3.3.13_:*:*:*:*:*:*:*" }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-8081.json"