CVE-2021-20682: OS Command Injection
Published Mar 26, 2021
·Updated
baserCMS versions prior to 4.4.5 allows a remote attacker with an administrative privilege to execute arbitrary OS commands via unspecified vectors.
Affected Software
1 affected component
baserCMS BaserCMS<4.4.5
Remediation
Patch Available
Event History
Mar 26, 2021
CVE Published
via MITRE·08:50 AM
Data Sourced
via MITRE·08:50 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2021-20682.
2
What is the severity of CVE-2021-20682?
The severity of CVE-2021-20682 is critical with a CVSS score of 7.2.
3
What are the affected versions of baserCMS?
The affected versions of baserCMS are versions prior to 4.4.5.
4
How can a remote attacker exploit CVE-2021-20682?
A remote attacker with an administrative privilege can exploit CVE-2021-20682 by executing arbitrary OS commands via unspecified vectors.
5
Is there a fix available for CVE-2021-20682?
Yes, a fix is available for CVE-2021-20682 in baserCMS version 4.4.5.