ZeroHour

CVE-2021-20681

CVSS 3.1
5.4 medium
EPSS
<1%p52
Published
()
Modified
Description

Improper neutralization of JavaScript input in the page editing function of baserCMS versions prior to 4.4.5 allows remote authenticated attackers to inject an arbitrary script via unspecified vectors.

Vendors
basercms
Products
basercms
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.