VYPR
Moderate severityNVD Advisory· Published Oct 2, 2011· Updated Apr 29, 2026

CVE-2011-2674

CVE-2011-2674

Description

BaserCMS before 1.6.12 does not properly restrict additions to the membership of the operators group, which allows remote authenticated users to gain privileges via unspecified vectors.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
baserproject/basercmsPackagist
< 1.6.121.6.12

Affected products

24
  • Basercms/Basercms24 versions
    cpe:2.3:a:basercms:basercms:*:*:*:*:*:*:*:*+ 23 more
    • cpe:2.3:a:basercms:basercms:*:*:*:*:*:*:*:*range: <=1.6.11.4
    • cpe:2.3:a:basercms:basercms:1.5.4:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.5.5:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.5.6:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.5.7:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.5.8:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.5.9:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.0:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.1:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.10:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.11:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.11.1:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.11.2:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.11.3:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.2:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.3:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.4:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.5:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.6:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.7:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.7.1:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.8:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.9:*:*:*:*:*:*:*
    • cpe:2.3:a:basercms:basercms:1.6.9.1:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.