CVE-2012-1248
15.05.2012, 20:55
app/config/core.php in baserCMS 1.6.15 and earlier does not properly handle installations in shared-hosting environments, which allows remote attackers to hijack sessions by leveraging administrative access to a different domain.Enginsight
Vendor | Product | Version |
---|---|---|
basercms | basercms | 𝑥 ≤ 1.6.15 |
basercms | basercms | 1.5.4 |
basercms | basercms | 1.5.5 |
basercms | basercms | 1.5.6 |
basercms | basercms | 1.5.7 |
basercms | basercms | 1.5.8 |
basercms | basercms | 1.5.9 |
basercms | basercms | 1.6.0 |
basercms | basercms | 1.6.1 |
basercms | basercms | 1.6.2 |
basercms | basercms | 1.6.3 |
basercms | basercms | 1.6.4 |
basercms | basercms | 1.6.5 |
basercms | basercms | 1.6.6 |
basercms | basercms | 1.6.7 |
basercms | basercms | 1.6.7.1 |
basercms | basercms | 1.6.8 |
basercms | basercms | 1.6.9 |
basercms | basercms | 1.6.9.1 |
basercms | basercms | 1.6.10 |
basercms | basercms | 1.6.11 |
basercms | basercms | 1.6.11.1 |
basercms | basercms | 1.6.11.2 |
basercms | basercms | 1.6.11.3 |
basercms | basercms | 1.6.11.4 |
basercms | basercms | 1.6.12 |
basercms | basercms | 1.6.13 |
basercms | basercms | 1.6.13.1 |
basercms | basercms | 1.6.13.6 |
basercms | basercms | 1.6.14 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References