First published: Wed Jul 19 2017(Updated: )
Subrion CMS before 4.1.6 has a SQL injection vulnerability in /front/actions.php via the $_POST array.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Subrion CMS | <=4.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-11445 has been classified as a medium severity SQL injection vulnerability.
To fix CVE-2017-11445, upgrade Subrion CMS to version 4.1.6 or later.
CVE-2017-11445 affects Subrion CMS versions prior to 4.1.6.
CVE-2017-11445 is a SQL injection vulnerability.
While specific exploit details are not publicly documented, SQL injection vulnerabilities generally can be exploited if the software is not updated.