PT-2026-29151 · Basercms · Basercms

Ren Xingdian

·

Published

2026-03-31

·

Updated

2026-04-01

·

CVE-2026-30880

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions baserCMS versions prior to 5.2.3
Description baserCMS is a website development framework. Before version 5.2.3, it contains an operating system command injection issue within the installer. This allows attackers to potentially execute arbitrary commands on the system. The issue has been addressed in version 5.2.3.
Recommendations Update baserCMS to version 5.2.3 or later.

Exploit

Fix

RCE

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-30880
GHSA-6HPG-8RX3-CWGV

Affected Products

Basercms