baserCMS 4.3.6 and earlier is affected by Cross Site Scripting (XSS) via arbitrary script execution. Admin access is required to exploit this vulnerability. The affected components is toolbar.php. The issue is fixed in version 4.3.7.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-0591 | baserCMS 4.3.6 and earlier is affected by Cross Site Scripting (XSS) via arbitrary script execution. Admin access is required to exploit this vulnerability. The affected components is toolbar.php. The issue is fixed in version 4.3.7. |
Github GHSA |
GHSA-4r3m-j6x5-48m3 | Cross Site Scripting(XSS) Vulnerability in Latest Release 4.3.6 Site basic settings |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-04T13:08:21.880Z
Reserved: 2020-06-25T00:00:00
Link: CVE-2020-15155
No data.
Status : Modified
Published: 2020-08-28T22:15:10.563
Modified: 2024-11-21T05:04:57.690
Link: CVE-2020-15155
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA