CVE-2021-43464: High severity subrion cms vulnerability
Published Apr 4, 2022
·Updated
A Remiote Code Execution (RCE) vulnerability exiss in Subrion CMS 4.2.1 via modified code in a background field; when the information is modified, the data in it will be executed through eval().
Affected Software
1 affected component
Intelliants Subrion CMS=4.2.1
Event History
Apr 4, 2022
CVE Published
via MITRE·05:28 PM
Data Sourced
via MITRE·05:28 PM
Description
Frequently Asked Questions
1
What is CVE-2021-43464?
CVE-2021-43464 is a Remote Code Execution (RCE) vulnerability in Subrion CMS 4.2.1.
2
How does the vulnerability in Subrion CMS 4.2.1 work?
The vulnerability in Subrion CMS 4.2.1 allows an attacker to execute arbitrary code by modifying the code in a background field.
3
What is the severity of CVE-2021-43464?
CVE-2021-43464 has a severity rating of 8.8 (high).
4
How can I check if my Subrion CMS version is affected?
You can check if your Subrion CMS version is affected by CVE-2021-43464 by verifying if it is version 4.2.1.
5
How do I fix the CVE-2021-43464 vulnerability in Subrion CMS 4.2.1?
To fix the CVE-2021-43464 vulnerability in Subrion CMS 4.2.1, upgrade to a patched version provided by Intelliants.