Medium severity5.4NVD Advisory· Published May 12, 2017· Updated Jun 17, 2026
CVE-2016-4877
CVE-2016-4877
Description
Cross-site scripting vulnerability in baserCMS plugin Mail version 3.0.10 and earlier allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Range: <=3.0.10
- baserCMS Users Community/baserCMS plugin Mailv5Range: version 3.0.10 and earlier
Patches
Vulnerability mechanics
References
3- basercms.net/security/JVN92765814nvdPatchVendor Advisory
- www.securityfocus.com/bid/93217nvdThird Party AdvisoryVDB Entry
- jvn.jp/en/jp/JVN92765814/index.htmlnvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.