Vulnerability Description
baserCMS is a Content Management system. Prior to version 4.7.5, any file may be uploaded on the management system of baserCMS. Version 4.7.5 contains a patch.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Basercms | Basercms | < 4.7.5 |
Related Weaknesses (CWE)
References
- https://github.com/baserproject/basercms/commit/922025a98b0e697ab78f6a785a004e07Patch
- https://github.com/baserproject/basercms/commit/9297629983ed908c7f51bf61a0231ddePatch
- https://github.com/baserproject/basercms/releases/tag/basercms-4.7.5Release Notes
- https://github.com/baserproject/basercms/security/advisories/GHSA-mfvg-qwcw-qvc8Third Party Advisory
- https://github.com/baserproject/basercms/commit/922025a98b0e697ab78f6a785a004e07Patch
- https://github.com/baserproject/basercms/commit/9297629983ed908c7f51bf61a0231ddePatch
- https://github.com/baserproject/basercms/releases/tag/basercms-4.7.5Release Notes
- https://github.com/baserproject/basercms/security/advisories/GHSA-mfvg-qwcw-qvc8Third Party Advisory
FAQ
What is CVE-2023-25655?
CVE-2023-25655 is a vulnerability with a CVSS score of 9.8 (CRITICAL). baserCMS is a Content Management system. Prior to version 4.7.5, any file may be uploaded on the management system of baserCMS. Version 4.7.5 contains a patch.
How severe is CVE-2023-25655?
CVE-2023-25655 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2023-25655?
Check the references section above for vendor advisories and patch information. Affected products include: Basercms Basercms.