Vulnerabilities (CVE)

Filtered by vendor Websitebaker Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2011-4322 1 Websitebaker 1 Websitebaker 2020-01-29 5.0 MEDIUM 7.5 HIGH
websitebaker prior to and including 2.8.1 has an authentication error in backup module.
CVE-2011-2933 1 Websitebaker 1 Websitebaker 2020-01-21 6.5 MEDIUM 7.2 HIGH
An Arbitrary File Upload vulnerability exists in admin/media/upload.php in WebsiteBaker 2.8.1 and earlier due to a failure to restrict uploaded files with .htaccess, .php4, .php5, and .phtl extensions.
CVE-2011-2934 1 Websitebaker 1 Websitebaker 2020-01-17 6.8 MEDIUM 8.8 HIGH
A Cross Site Request Forgery (CSRF) vulnerability exists in the administrator functions in WebsiteBaker 2.8.1 and earlier due to inadequate confirmation for sensitive transactions.