Описание
baserCMS is a website development framework with WebAPI that runs on PHP8 and CakePHP4. There is a XSS Vulnerability in Favorites Feature to baserCMS. This issue has been patched in version 4.8.0.
Ссылки
- Vendor Advisory
- Release Notes
- Third Party Advisory
- Vendor Advisory
- Release Notes
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 4.8.0 (исключая)
cpe:2.3:a:basercms:basercms:*:*:*:*:*:*:*:*
EPSS
Процентиль: 67%
0.0055
Низкий
6.1 Medium
CVSS3
Дефекты
CWE-79
CWE-79
Связанные уязвимости
CVSS3: 6.1
github
больше 2 лет назад
baserCMS Cross-site Scripting Vulnerability in Favorites Feature
EPSS
Процентиль: 67%
0.0055
Низкий
6.1 Medium
CVSS3
Дефекты
CWE-79
CWE-79