ZeroHour

CVE-2020-15155

CVSS 3.1
7.3 high
EPSS
1%p68
Published
()
Modified
Description

baserCMS 4.3.6 and earlier is affected by Cross Site Scripting (XSS) via arbitrary script execution. Admin access is required to exploit this vulnerability. The affected components is toolbar.php. The issue is fixed in version 4.3.7.

Vendors
basercms
Products
basercms
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.