Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
basercms basercms vulnerabilities and exploits
(subscribe to this query)
9
CVSSv2
CVE-2021-41243
There is a Potential Zip Slip Vulnerability and OS Command Injection Vulnerability on the management system of baserCMS. Users with permissions to upload files may upload crafted zip files which may execute arbitrary commands on the host operating system. This is a vulnerability ...
Basercms Basercms
9
CVSSv2
CVE-2021-41279
BaserCMS is an open source content management system with a focus on Japanese language support. In affected versions users with upload privilege may upload crafted zip files capable of path traversal on the host operating system. This is a vulnerability that needs to be addressed...
Basercms Basercms
3.5
CVSSv2
CVE-2016-4880
Cross-site scripting vulnerability in baserCMS plugin Blog version 3.0.10 and previous versions allows remote authenticated malicious users to inject arbitrary web script or HTML via unspecified vectors.
Basercms Basercms 3.0.10
6.8
CVSSv2
CVE-2016-4884
Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Blog version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators via unspecified vectors.
Basercms Basercms 3.0.10
6.8
CVSSv2
CVE-2016-4876
Cross-site request forgery (CSRF) vulnerability in baserCMS version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators to execute arbitrary PHP code via unspecified vectors.
Basercms Basercms 3.0.10
6.8
CVSSv2
CVE-2016-4878
Cross-site request forgery (CSRF) vulnerability in baserCMS version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators via unspecified vectors.
Basercms Basercms 3.0.10
6.8
CVSSv2
CVE-2016-4881
Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Blog version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators via unspecified vectors.
Basercms Basercms 3.0.10
6.8
CVSSv2
CVE-2016-4882
Cross-site request forgery (CSRF) vulnerability in baserCMS version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators via unspecified vectors.
Basercms Basercms 3.0.10
3.5
CVSSv2
CVE-2016-4883
Cross-site scripting vulnerability in baserCMS version 3.0.10 and previous versions allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Basercms Basercms 3.0.10
6.8
CVSSv2
CVE-2016-4885
Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Feed version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators via unspecified vectors.
Basercms Basercms 3.0.10
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-35229
privilege escalation
local users
CVE-2024-5405
CVE-2024-27842
CVE-2024-5274
CVE-2024-5378
CVE-2024-34152
hard-coded
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »