CVE-2017-18366: CSRF
Published Apr 12, 2019
·Updated
Subrion CMS 4.1.5 has CSRF in blog/delete/.
Other sources
Subrion CMS is vulnerable to cross-site request forgery in blog/delete/. This has been patched in version 4.2.1.
Affected Software
2 affected componentsFixes available
composer/intelliants/subrion<4.2.1
4.2.1
Intelliants Subrion CMS=4.1.5
Event History
Apr 12, 2019
CVE Published
via MITRE·08:53 PM
Data Sourced
via MITRE·08:53 PM
Description
May 14, 2022
Advisory Published
01:10 AM
Frequently Asked Questions
1
What is the vulnerability ID for Subrion CMS?
The vulnerability ID for Subrion CMS is CVE-2017-18366.
2
What is the severity rating of CVE-2017-18366?
The severity rating of CVE-2017-18366 is classified as high, with a severity value of 8.8.
3
Which version of Subrion CMS is affected by the vulnerability?
Subrion CMS version 4.1.5 is affected by the vulnerability.
4
How can I fix CVE-2017-18366?
To fix CVE-2017-18366, you need to update Subrion CMS to version 4.2.1 or higher.