CVE-2023-25654: baserCMS File Uploader Remote Code Execution (RCE) vulnerability
Published Mar 23, 2023
·Updated
baserCMS is a Content Management system. Prior to version 4.7.5, there is a Remote Code Execution (RCE) Vulnerability in the management system of baserCMS. Version 4.7.5 contains a patch.
Affected Software
1 affected component
baserCMS BaserCMS<4.7.5
Remediation
Event History
Mar 23, 2023
CVE Published
via MITRE·07:22 PM
Data Sourced
via MITRE·07:22 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-25654?
CVE-2023-25654 is a Remote Code Execution (RCE) vulnerability in the management system of baserCMS.
2
What is the severity of CVE-2023-25654?
CVE-2023-25654 has a severity rating of 9.8 (critical).
3
How does CVE-2023-25654 affect baserCMS?
CVE-2023-25654 affects baserCMS versions prior to 4.7.5.
4
How can I fix CVE-2023-25654?
To fix CVE-2023-25654, update baserCMS to version 4.7.5 or higher.
5
What is CWE-434?
CWE-434 is a Security Misconfiguration vulnerability.