baserCMS is a website development framework. Prior to version 4.8.0, there is a cross-site scripting vulnerability in the file upload feature of baserCMS. Version 4.8.0 contains a patch for this issue.
References
Link | Resource |
---|---|
https://basercms.net/security/JVN_24381990 | Vendor Advisory |
https://github.com/baserproject/basercms/commit/eb5977533d05db4f3bb03bd19630b66052799b2e | Third Party Advisory |
https://github.com/baserproject/basercms/security/advisories/GHSA-ggj4-78rm-6xgv | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: GitHub_M
Published: 2023-10-30T18:18:35.381Z
Updated: 2023-10-30T18:18:35.381Z
Reserved: 2023-09-20T15:35:38.146Z
Link: CVE-2023-43647
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-10-30T19:15:08.110
Modified: 2023-11-06T19:38:20.630
Link: CVE-2023-43647
JSON object: View
Redhat Information
No data.
CWE