CVE-2017-11444: SQL Injection
Published Jul 19, 2017
·Updated
Subrion CMS before 4.1.5.10 has a SQL injection vulnerability in /front/search.php via the $GET array.
Affected Software
1 affected component
Intelliants Subrion CMS<=4.1.4
Event History
Jul 19, 2017
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-11444?
CVE-2017-11444 is classified as a high severity vulnerability due to the potential for SQL injection attacks.
2
How do I fix CVE-2017-11444?
To fix CVE-2017-11444, users should upgrade Subrion CMS to version 4.1.5.10 or later.
3
What is affected by CVE-2017-11444?
CVE-2017-11444 affects Subrion CMS versions prior to 4.1.5.10.
4
How does CVE-2017-11444 work?
CVE-2017-11444 exploits a SQL injection vulnerability through improperly sanitized input in the /front/search.php file.
5
What is the potential impact of CVE-2017-11444?
The potential impact of CVE-2017-11444 includes unauthorized access to the database and exposure of sensitive data.