First published: Wed Jul 19 2017(Updated: )
Subrion CMS before 4.1.5.10 has a SQL injection vulnerability in /front/search.php via the $_GET array.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Subrion CMS | <=4.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-11444 is classified as a high severity vulnerability due to the potential for SQL injection attacks.
To fix CVE-2017-11444, users should upgrade Subrion CMS to version 4.1.5.10 or later.
CVE-2017-11444 affects Subrion CMS versions prior to 4.1.5.10.
CVE-2017-11444 exploits a SQL injection vulnerability through improperly sanitized input in the /front/search.php file.
The potential impact of CVE-2017-11444 includes unauthorized access to the database and exposure of sensitive data.