Vulnerabilities in baserCMS Users Community
27 resultsVexday analysis
O baserCMS Users Community apresenta 27 vulnerabilidades catalogadas, predominantemente de injeção cross-site (CWE-79), mas nenhuma crítica e sem registros de exploração ativa atual. O risco permanece moderado e estável, com apenas 1 vulnerabilidade publicada nos últimos 90 dias, indicando que a superfície de ataque não está em expansão acelerada.
CVE-2018-0574—Cross-site scripting vulnerability in baserCMS (baserCMS 4.1.0.1 and earlier versions, baserCMS 3.0.15 and earlier versions) allows remote aEPSS 0.8%CVE-2021-20683—Improper neutralization of JavaScript input in the blog article editing function of baserCMS versions prior to 4.4.5 allows remote authenticEPSS 0.7%CVE-2021-20681—Improper neutralization of JavaScript input in the page editing function of baserCMS versions prior to 4.4.5 allows remote authenticated attEPSS 0.7%CVE-2018-0570—Cross-site scripting vulnerability in baserCMS (baserCMS 4.1.0.1 and earlier versions, baserCMS 3.0.15 and earlier versions) allows remote aEPSS 0.7%CVE-2022-41994MEDIUMStored cross-site scripting vulnerability in Permission Settings of baserCMS versions prior to 4.7.2 allows a remote authenticated attacker EPSS 0.6%CVE-2022-42486MEDIUMStored cross-site scripting vulnerability in User group management of baserCMS versions prior to 4.7.2 allows a remote authenticated attackeEPSS 0.6%CVE-2026-65875MEDIUMBaserCMS provided by baserCMS Users Community contains a CSV file injection vulnerability. If a user downloads and opens a CSV file containiEPSS 0.2%