Lucene search

K

Baigo Cms Security Vulnerabilities

cve
cve

CVE-2018-16458

An issue was discovered in baigo CMS v2.1.1. There is an index.php?m=article&c=request CSRF that can cause publication of any article.

6.5CVSS

6.5AI Score

0.001EPSS

2018-09-04 11:29 AM
21
cve
cve

CVE-2019-9226

An issue was discovered in baigo CMS 2.1.1. There is a persistent XSS vulnerability that allows remote attackers to inject arbitrary web script or HTML via the opt[base][BG_SITE_NAME] parameter to the bg_console/index.php?m=opt&c=request URI.

6.1CVSS

5.9AI Score

0.001EPSS

2019-02-28 02:29 PM
26
2
cve
cve

CVE-2019-9227

An issue was discovered in baigo CMS 2.1.1. There is a vulnerability that allows remote attackers to execute arbitrary code. A BG_SITE_NAME parameter with malicious code can be written into the opt_base.inc.php file.

9.8CVSS

9.6AI Score

0.026EPSS

2019-02-28 02:29 PM
31
2
cve
cve

CVE-2020-20584

A cross site scripting vulnerability in baigo CMS v4.0-beta-1 allows attackers to execute arbitrary web scripts or HTML via the form parameter post to /public/console/profile/info-submit/.

6.1CVSS

6.2AI Score

0.001EPSS

2021-07-08 04:15 PM
40
3
cve
cve

CVE-2022-26607

A remote code execution (RCE) vulnerability in baigo CMS v3.0-alpha-2 was discovered to allow attackers to execute arbitrary code via uploading a crafted PHP file.

7.2CVSS

7.6AI Score

0.015EPSS

2022-04-06 09:15 PM
56