Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
basercms basercms vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2016-4886
Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Mail version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators via unspecified vectors.
Basercms Basercms 3.0.10
8.8
CVSSv3
CVE-2016-4887
Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Uploader version 3.0.10 and previous versions allows remote malicious users to hijack the authentication of administrators via unspecified vectors.
Basercms Basercms 3.0.10
NA
CVE-2023-51450
baserCMS is a website development framework. Prior to version 5.0.9, there is an OS Command Injection vulnerability in the site search feature of baserCMS. Version 5.0.9 contains a fix for this vulnerability.
8.8
CVSSv3
CVE-2016-1170
Cross-site request forgery (CSRF) vulnerability in the Casebook plugin prior to 0.9.4 for baserCMS allows remote malicious users to hijack the authentication of administrators.
Hiniarata Casebook Plugin
8.8
CVSSv3
CVE-2016-1174
Cross-site request forgery (CSRF) vulnerability in the Menubook plugin prior to 0.9.3 for baserCMS allows remote malicious users to hijack the authentication of administrators.
Hiniarata Casebook Plugin
8.8
CVSSv3
CVE-2016-1172
Cross-site request forgery (CSRF) vulnerability in the Recruit plugin prior to 0.9.3 for baserCMS allows remote malicious users to hijack the authentication of administrators.
Hiniarata Casebook Plugin
6.1
CVSSv3
CVE-2016-1169
Cross-site scripting (XSS) vulnerability in the Casebook plugin prior to 0.9.4 for baserCMS allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Hiniarata Casebook Plugin
6.1
CVSSv3
CVE-2016-1171
Cross-site scripting (XSS) vulnerability in the Recruit plugin prior to 0.9.3 for baserCMS allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Hiniarata Casebook Plugin
6.1
CVSSv3
CVE-2016-1173
Cross-site scripting (XSS) vulnerability in the Menubook plugin prior to 0.9.3 for baserCMS allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Hiniarata Casebook Plugin
NA
CVE-2024-26128
baserCMS is a website development framework. Prior to version 5.0.9, there is a cross-site scripting vulnerability in the content management feature. Version 5.0.9 contains a fix for this vulnerability.
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-36920
buffer overflow
CVE-2024-36913
CVE-2024-5497
CVE-2024-23917
CVE-2024-4956
server-side request forgery
CVE-2024-35468
SSTI
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »