CVE-2020-15276

Published
View on NVD ↗
CVSS v3
7.7
HIGH
CVSS v2
3.5
LOW
Affected
1
PROJECT

Description

baserCMS before version 4.4.1 is vulnerable to Cross-Site Scripting. Arbitrary JavaScript may be executed by entering a crafted nickname in blog comments. The issue affects the blog comment component. It is fixed in version 4.4.1.

baserCMS : Based Website Development Project
GitHubGitHub
193