CVE-2025-56556: Medium severity Subrion CMS vulnerability
An issue was discovered in Subrion CMS 4.2.1, allowing authenticated adminitrators or moderators with access to the built-in Run SQL Query feature under the SQL Tool admin panel - to gain escalated privileges in the context of the SQL query tool.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-56556?
CVE-2025-56556 has a high severity rating due to the potential for privilege escalation.
How do I fix CVE-2025-56556?
To fix CVE-2025-56556, upgrade to a patched version of Subrion CMS that addresses this vulnerability.
Who is affected by CVE-2025-56556?
Authenticated administrators or moderators using Subrion CMS 4.2.1 with access to the SQL Tool are affected by CVE-2025-56556.
What type of vulnerability is CVE-2025-56556?
CVE-2025-56556 is a privilege escalation vulnerability that arises from inadequate access controls.
Is CVE-2025-56556 exploit related to SQL injection?
No, CVE-2025-56556 is not related to SQL injection, but rather pertains to the improper use of the SQL query tool.