Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
basercms basercms vulnerabilities and exploits
(subscribe to this query)
9
CVSSv2
CVE-2021-41243
There is a Potential Zip Slip Vulnerability and OS Command Injection Vulnerability on the management system of baserCMS. Users with permissions to upload files may upload crafted zip files which may execute arbitrary commands on the host operating system. This is a vulnerability ...
Basercms Basercms
9
CVSSv2
CVE-2021-41279
BaserCMS is an open source content management system with a focus on Japanese language support. In affected versions users with upload privilege may upload crafted zip files capable of path traversal on the host operating system. This is a vulnerability that needs to be addressed...
Basercms Basercms
9
CVSSv2
CVE-2021-20682
baserCMS versions before 4.4.5 allows a remote attacker with an administrative privilege to execute arbitrary OS commands via unspecified vectors.
Basercms Basercms
7.5
CVSSv2
CVE-2017-10842
SQL injection vulnerability in the baserCMS 3.0.14 and previous versions, 4.0.5 and previous versions allows remote malicious users to execute arbitrary SQL commands via unspecified vectors.
Basercms Basercms
6.8
CVSSv2
CVE-2016-4879
Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Mail version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators via unspecified vectors.
Basercms Basercms
Basercms Mail
6.8
CVSSv2
CVE-2016-4881
Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Blog version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators via unspecified vectors.
Basercms Basercms 3.0.10
6.8
CVSSv2
CVE-2016-4884
Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Blog version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators via unspecified vectors.
Basercms Basercms 3.0.10
6.8
CVSSv2
CVE-2016-4876
Cross-site request forgery (CSRF) vulnerability in baserCMS version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators to execute arbitrary PHP code via unspecified vectors.
Basercms Basercms 3.0.10
6.8
CVSSv2
CVE-2016-4878
Cross-site request forgery (CSRF) vulnerability in baserCMS version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators via unspecified vectors.
Basercms Basercms 3.0.10
6.8
CVSSv2
CVE-2016-4882
Cross-site request forgery (CSRF) vulnerability in baserCMS version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators via unspecified vectors.
Basercms Basercms 3.0.10
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
validation
CVE-2012-1823
malicious code
CVE-2024-5770
CVE-2023-45866
CVE-2024-35687
local users
CVE-2024-31246
CVE-2024-35730
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »