gondoh
13 exploits
Active since Aug 2020
baserCMS < 4.7.5 - Remote Code Execution via Unrestricted File Upload
CVSS 9.8
baserCMS < 4.7.5 - Remote Code Execution via Unrestricted File Upload
CVSS 9.8
baserCMS < 4.7.5 - Unauthenticated Unrestricted File Upload
CVSS 9.8
baserCMS < 4.3.7 - Authenticated Stored Cross-Site Scripting in toolbar.php
CVSS 7.3
baserCMS < 4.3.7 - Authenticated Remote Code Execution and Cross-Site Scripting via File Upload
CVSS 7.6
baserCMS 4.0.0-4.4.0 - Cross-Site Scripting in Management Screen Input Fields
CVSS 7.3
baserCMS 4.0.0-4.4.0 - Stored Cross-Site Scripting in Blog Comment Nickname
CVSS 7.7
baserCMS < 4.4.1 - Authenticated Remote Code Execution via Edit Template File Upload
CVSS 7.2
baserCMS - Zip Slip & Command Injection
CVSS 9.1
BaserCMS < 4.5.4 - Path Traversal via Crafted Zip File Upload
CVSS 7.7
basercms < 4.7.2 - Cross-Site Scripting
CVSS 4.6
baserCMS < 4.7.5 - Remote Code Execution via Unrestricted File Upload
CVSS 9.8
baserCMS < 4.7.5 - Unauthenticated Unrestricted File Upload
CVSS 9.8