CVE-2016-4876

Cross-site request forgery (CSRF) vulnerability in baserCMS version 3.0.10 and earlier allows remote attackers to hijack the authentication of administrators to execute arbitrary PHP code via unspecified vectors.
References
Link Resource
https://jvn.jp/en/jp/JVN92765814/index.html Third Party Advisory VDB Entry
http://basercms.net/security/JVN92765814 Patch Vendor Advisory
http://www.securityfocus.com/bid/93217 Third Party Advisory VDB Entry
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:basercms:basercms:3.0.10:*:*:*:*:*:*:*

Information

Published : 2017-05-12 11:29

Updated : 2017-05-18 06:42


NVD link : CVE-2016-4876

Mitre link : CVE-2016-4876


JSON object : View

CWE
CWE-352

Cross-Site Request Forgery (CSRF)

Advertisement

dedicated server usa

Products Affected

basercms

  • basercms