Vulnerability Description
baserCMS is a website development framework. In versions 4.6.0 through 4.7.6, there is a Code Injection vulnerability in the mail form of baserCMS. As of time of publication, no known patched versions are available.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Basercms | Basercms | >= 4.6.0, <= 4.7.6 |
Related Weaknesses (CWE)
References
- https://basercms.net/security/JVN_45547161Vendor Advisory
- https://github.com/baserproject/basercms/security/advisories/GHSA-vrm6-c878-fpq6Third Party Advisory
- https://basercms.net/security/JVN_45547161Vendor Advisory
- https://github.com/baserproject/basercms/security/advisories/GHSA-vrm6-c878-fpq6Third Party Advisory
FAQ
What is CVE-2023-43792?
CVE-2023-43792 is a vulnerability with a CVSS score of 9.8 (CRITICAL). baserCMS is a website development framework. In versions 4.6.0 through 4.7.6, there is a Code Injection vulnerability in the mail form of baserCMS. As of time of publication, no known patched versions...
How severe is CVE-2023-43792?
CVE-2023-43792 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2023-43792?
Check the references section above for vendor advisories and patch information. Affected products include: Basercms Basercms.