Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
basercms basercms vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2016-4885
Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Feed version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators via unspecified vectors.
Basercms Basercms 3.0.10
8.8
CVSSv3
CVE-2016-4887
Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Uploader version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators via unspecified vectors.
Basercms Basercms 3.0.10
NA
CVE-2023-51450
baserCMS is a website development framework. Prior to version 5.0.9, there is an OS Command Injection vulnerability in the site search feature of baserCMS. Version 5.0.9 contains a fix for this vulnerability.
8.8
CVSSv3
CVE-2016-1170
Cross-site request forgery (CSRF) vulnerability in the Casebook plugin prior to 0.9.4 for baserCMS allows remote malicious users to hijack the authentication of administrators.
Hiniarata Casebook Plugin
8.8
CVSSv3
CVE-2016-1172
Cross-site request forgery (CSRF) vulnerability in the Recruit plugin prior to 0.9.3 for baserCMS allows remote malicious users to hijack the authentication of administrators.
Hiniarata Casebook Plugin
8.8
CVSSv3
CVE-2016-1174
Cross-site request forgery (CSRF) vulnerability in the Menubook plugin prior to 0.9.3 for baserCMS allows remote malicious users to hijack the authentication of administrators.
Hiniarata Casebook Plugin
6.1
CVSSv3
CVE-2016-1171
Cross-site scripting (XSS) vulnerability in the Recruit plugin prior to 0.9.3 for baserCMS allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Hiniarata Casebook Plugin
6.1
CVSSv3
CVE-2016-1169
Cross-site scripting (XSS) vulnerability in the Casebook plugin prior to 0.9.4 for baserCMS allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Hiniarata Casebook Plugin
6.1
CVSSv3
CVE-2016-1173
Cross-site scripting (XSS) vulnerability in the Menubook plugin prior to 0.9.3 for baserCMS allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Hiniarata Casebook Plugin
NA
CVE-2024-26128
baserCMS is a website development framework. Prior to version 5.0.9, there is a cross-site scripting vulnerability in the content management feature. Version 5.0.9 contains a fix for this vulnerability.
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
NULL pointer dereference
CVE-2023-52689
CVE-2024-23803
client side
CVE-2023-52696
information disclosure
CVE-2024-35843
CVE-2024-27130
CVE-2023-52697
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »