CVE-2021-20681
CVE-2021-20681
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.7%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
26 Mar 2021Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Improper neutralization of JavaScript input in the page editing function of baserCMS versions prior to 4.4.5 allows remote authenticated attackers to inject an arbitrary script via unspecified vectors.
Affected products
baserCMS Users Community · baserCMSWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →