Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2019-9227

Disclosure Date: February 28, 2019 (last updated November 27, 2024)
An issue was discovered in baigo CMS 2.1.1. There is a vulnerability that allows remote attackers to execute arbitrary code. A BG_SITE_NAME parameter with malicious code can be written into the opt_base.inc.php file.
0
Attacker Value
Unknown

CVE-2019-9226

Disclosure Date: February 28, 2019 (last updated November 27, 2024)
An issue was discovered in baigo CMS 2.1.1. There is a persistent XSS vulnerability that allows remote attackers to inject arbitrary web script or HTML via the opt[base][BG_SITE_NAME] parameter to the bg_console/index.php?m=opt&c=request URI.
0
Attacker Value
Unknown

CVE-2018-16458

Disclosure Date: September 04, 2018 (last updated November 27, 2024)
An issue was discovered in baigo CMS v2.1.1. There is an index.php?m=article&c=request CSRF that can cause publication of any article.
0