Vulnerability Description
baserCMS is a website development framework. Prior to version 4.8.0, there is a cross site request forgery vulnerability in the content preview feature of baserCMS. Version 4.8.0 contains a patch for this issue.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Basercms | Basercms | < 4.8.0 |
Related Weaknesses (CWE)
References
- https://basercms.net/security/JVN_99052047Vendor Advisory
- https://github.com/baserproject/basercms/commit/874c55433fead93e0be9df96fd28740fPatchThird Party Advisory
- https://github.com/baserproject/basercms/security/advisories/GHSA-fw9x-cqjq-7jx5Third Party Advisory
- https://basercms.net/security/JVN_99052047Vendor Advisory
- https://github.com/baserproject/basercms/commit/874c55433fead93e0be9df96fd28740fPatchThird Party Advisory
- https://github.com/baserproject/basercms/security/advisories/GHSA-fw9x-cqjq-7jx5Third Party Advisory
FAQ
What is CVE-2023-43649?
CVE-2023-43649 is a vulnerability with a CVSS score of 4.7 (MEDIUM). baserCMS is a website development framework. Prior to version 4.8.0, there is a cross site request forgery vulnerability in the content preview feature of baserCMS. Version 4.8.0 contains a patch for ...
How severe is CVE-2023-43649?
CVE-2023-43649 has been rated MEDIUM with a CVSS base score of 4.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-43649?
Check the references section above for vendor advisories and patch information. Affected products include: Basercms Basercms.