5.1
CVSSv2

CVE-2012-1248

Published: 15/05/2012 Updated: 14/09/2021
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 454
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

app/config/core.php in baserCMS 1.6.15 and previous versions does not properly handle installations in shared-hosting environments, which allows remote malicious users to hijack sessions by leveraging administrative access to a different domain.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

basercms basercms 1.6.14

basercms basercms 1.6.13

basercms basercms 1.6.12

basercms basercms 1.6.2

basercms basercms 1.6.3

basercms basercms 1.5.4

basercms basercms 1.5.5

basercms basercms 1.6.9

basercms basercms 1.6.11

basercms basercms 1.6.6

basercms basercms 1.6.7

basercms basercms 1.5.8

basercms basercms 1.5.9

basercms basercms 1.6.11.2

basercms basercms 1.6.11.1

basercms basercms 1.6.7.1

basercms basercms 1.6.8

basercms basercms 1.6.0

basercms basercms 1.6.1

basercms basercms 1.6.13.6

basercms basercms 1.6.13.1

basercms basercms 1.6.10

basercms basercms

basercms basercms 1.6.4

basercms basercms 1.6.5

basercms basercms 1.5.6

basercms basercms 1.5.7

basercms basercms 1.6.11.4

basercms basercms 1.6.11.3

basercms basercms 1.6.9.1