Vulnerabilities > Baigo > Baigo SSO

DATE CVE VULNERABILITY TITLE RISK
2019-03-24 CVE-2019-10015 Code Injection vulnerability in Baigo SSO 3.0.1
baigoStudio baigoSSO v3.0.1 allows remote attackers to execute arbitrary PHP code via the first form field of a configuration screen, because this code is written to the BG_SITE_NAME field in the opt_base.inc.php file.
network
low complexity
baigo CWE-94
7.2