Basercms Mail vulnerabilities
2 known vulnerabilities affecting basercms/mail.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2016-4879HIGHCVSS 8.8≤ 3.0.102017-05-12
CVE-2016-4879 [HIGH] CWE-352 CVE-2016-4879: Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Mail version 3.0.10 and earlier a
Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Mail version 3.0.10 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
nvd
CVE-2016-4877MEDIUMCVSS 5.4v3.0.102017-05-12
CVE-2016-4877 [MEDIUM] CWE-79 CVE-2016-4877: Cross-site scripting vulnerability in baserCMS plugin Mail version 3.0.10 and earlier allows remote
Cross-site scripting vulnerability in baserCMS plugin Mail version 3.0.10 and earlier allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.
nvd