affected product: GetSimpleCMS CE
version: 3.3.19.
First, go to the backend management page and click on the plugins button, and click ‘Download more pulgins’.
the function point ‘Download’ suffers from SSRF vulnerability.
start python’s http server, change the paramater ‘filename’
ssrf success