CVE-2024-46998
- EPSS 0.79%
- Veröffentlicht 24.10.2024 19:15:14
- Zuletzt bearbeitet 28.10.2024 15:32:34
baserCMS is a website development framework. Versions prior to 5.1.2 have a cross-site scripting vulnerability in the Edit Email Form Settings Feature. Version 5.1.2 fixes the issue.
CVE-2024-46996
- EPSS 0.91%
- Veröffentlicht 24.10.2024 19:15:14
- Zuletzt bearbeitet 28.10.2024 15:31:43
baserCMS is a website development framework. Versions prior to 5.1.2 have a cross-site scripting vulnerability in the Blog posts feature. Version 5.1.2 fixes this issue.
CVE-2024-46995
- EPSS 0.64%
- Veröffentlicht 24.10.2024 19:15:14
- Zuletzt bearbeitet 28.10.2024 15:33:01
baserCMS is a website development framework. Versions prior to 5.1.2 have a cross-site scripting vulnerability in HTTP 400 Bad Request. Version 5.1.2 fixes this issue.
CVE-2024-46994
- EPSS 0.87%
- Veröffentlicht 24.10.2024 19:15:13
- Zuletzt bearbeitet 28.10.2024 15:30:10
baserCMS is a website development framework. Versions prior to 5.1.2 have a cross-site scripting vulnerability in Blog posts and Contents list Feature. Version 5.1.2 fixes this issue.
CVE-2024-26128
- EPSS 1.75%
- Veröffentlicht 22.02.2024 19:15:09
- Zuletzt bearbeitet 20.12.2024 19:30:47
baserCMS is a website development framework. Prior to version 5.0.9, there is a cross-site scripting vulnerability in the content management feature. Version 5.0.9 contains a fix for this vulnerability.
CVE-2023-51450
- EPSS 0.58%
- Veröffentlicht 22.02.2024 15:15:08
- Zuletzt bearbeitet 18.12.2024 16:55:17
baserCMS is a website development framework. Prior to version 5.0.9, there is an OS Command Injection vulnerability in the site search feature of baserCMS. Version 5.0.9 contains a fix for this vulnerability.
CVE-2023-44379
- EPSS 0.62%
- Veröffentlicht 22.02.2024 15:15:08
- Zuletzt bearbeitet 18.12.2024 16:54:13
baserCMS is a website development framework. Prior to version 5.0.9, there is a cross-site scripting vulnerability in the site search feature. Version 5.0.9 contains a fix for this vulnerability.
CVE-2023-43792
- EPSS 0.34%
- Veröffentlicht 30.10.2023 21:15:07
- Zuletzt bearbeitet 21.11.2024 08:24:47
baserCMS is a website development framework. In versions 4.6.0 through 4.7.6, there is a Code Injection vulnerability in the mail form of baserCMS. As of time of publication, no known patched versions are available.
CVE-2023-43649
- EPSS 0.11%
- Veröffentlicht 30.10.2023 19:15:08
- Zuletzt bearbeitet 21.11.2024 08:24:32
baserCMS is a website development framework. Prior to version 4.8.0, there is a cross site request forgery vulnerability in the content preview feature of baserCMS. Version 4.8.0 contains a patch for this issue.
CVE-2023-43648
- EPSS 0.26%
- Veröffentlicht 30.10.2023 19:15:08
- Zuletzt bearbeitet 21.11.2024 08:24:32
baserCMS is a website development framework. Prior to version 4.8.0, there is a Directory Traversal Vulnerability in the form submission data management feature of baserCMS. Version 4.8.0 contains a patch for this issue.