CVE-2020-12468: High severity subrion vulnerability
Subrion CMS 4.2.1 allows CSV injection via a phrase value within a language. This is related to phrases/add/ and languages/download/.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-12468?
CVE-2020-12468 is a vulnerability in Subrion CMS 4.2.1 that allows CSV injection via a phrase value within a language.
What is the severity of CVE-2020-12468?
CVE-2020-12468 has a severity rating of 7.8 (high).
How does CVE-2020-12468 affect Subrion CMS?
CVE-2020-12468 affects Subrion CMS 4.2.1, allowing CSV injection via a phrase value within a language.
How can I fix CVE-2020-12468?
To fix CVE-2020-12468, you should update your Subrion CMS installation to version 4.2.2 or higher, which contains a patch for this vulnerability.
Where can I find more information about CVE-2020-12468?
You can find more information about CVE-2020-12468 at the following reference: <a href='https://github.com/belong2yourself/vulnerabilities/tree/master/Subrion%20CMS/CSV%20Injection'>CVE-2020-12468 Reference</a>.