CVE-2021-47830

GetSimple CMS My SMTP Contact Plugin 1.1.1 contains a cross-site request forgery (CSRF) vulnerability. Attackers can craft a malicious webpage that, when visited by an authenticated administrator, can change SMTP configuration settings in the plugin. This may allow unauthorized changes but does not directly enable remote code execution.
Configurations

Configuration 1 (hide)

cpe:2.3:a:get-simple:getsimplecms:1.1.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-01-21 18:16

Updated : 2026-03-06 20:15


NVD link : CVE-2021-47830

Mitre link : CVE-2021-47830

CVE.ORG link : CVE-2021-47830


JSON object : View

Products Affected

get-simple

  • getsimplecms
CWE
CWE-352

Cross-Site Request Forgery (CSRF)