CMS Made Simple (CMSMS) through 2.2.6 contains an admin password reset vulnerability because data values are improperly compared, as demonstrated by a hash beginning with the "0e" substring.
| Software | From | Fixed in |
|---|---|---|
| cmsmadesimple / cms_made_simple | - | 2.2.7.x |