Bagecms
by Bagesoft
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2018-19104 | 0.00 | — | 0.00 | Nov 8, 2018 | In BageCMS 3.1.3, upload/index.php has a CSRF vulnerability that can be used to upload arbitrary files and get server privileges. | |||
| CVE-2018-14582 | 0.00 | — | 0.00 | Jul 24, 2018 | index.php?r=admini/admin/create in BageCMS V3.1.3 allows CSRF to add a background administrator account. |
- CVE-2018-19104Nov 8, 2018risk 0.00cvss —epss 0.00
In BageCMS 3.1.3, upload/index.php has a CSRF vulnerability that can be used to upload arbitrary files and get server privileges.
- CVE-2018-14582Jul 24, 2018risk 0.00cvss —epss 0.00
index.php?r=admini/admin/create in BageCMS V3.1.3 allows CSRF to add a background administrator account.