Description
Improper neutralization of JavaScript input in the page editing function of baserCMS versions prior to 4.4.5 allows remote authenticated attackers to inject an arbitrary script via unspecified vectors.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-1236 | Improper neutralization of JavaScript input in the page editing function of baserCMS versions prior to 4.4.5 allows remote authenticated attackers to inject an arbitrary script via unspecified vectors. |
Github GHSA |
GHSA-24p5-x9f9-vvpx | Cross-site Scripting (XSS) in baserCMS |
References
History
No history.
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-08-03T17:45:45.212Z
Reserved: 2020-12-17T00:00:00.000Z
Link: CVE-2021-20681
No data.
Status : Modified
Published: 2021-03-26T09:15:12.043
Modified: 2024-11-21T05:47:00.003
Link: CVE-2021-20681
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA