CVE-2016-4880

MEDIUM5.4EPSS 0.24%

baserCMS Cross-site Scripting vulnerability

Published: 5/17/2022Modified: 2/16/2024
Also known as:GHSA-mxfv-c8p8-qw5h

Description

Cross-site scripting vulnerability in baserCMS plugin Blog version 3.0.10 and earlier allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM5.4CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

References (5)