CVE-2017-11445: SQL Injection
Published Jul 19, 2017
·Updated
Subrion CMS before 4.1.6 has a SQL injection vulnerability in /front/actions.php via the $POST array.
Affected Software
1 affected component
Intelliants Subrion CMS<=4.1.4
Event History
Jul 19, 2017
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-11445?
CVE-2017-11445 has been classified as a medium severity SQL injection vulnerability.
2
How do I fix CVE-2017-11445?
To fix CVE-2017-11445, upgrade Subrion CMS to version 4.1.6 or later.
3
Which versions of Subrion CMS are affected by CVE-2017-11445?
CVE-2017-11445 affects Subrion CMS versions prior to 4.1.6.
4
What type of vulnerability is CVE-2017-11445?
CVE-2017-11445 is a SQL injection vulnerability.
5
Is there a public exploit available for CVE-2017-11445?
While specific exploit details are not publicly documented, SQL injection vulnerabilities generally can be exploited if the software is not updated.