CVE-2026-96773: Intelliants Subrion CMS Login Page login.php authorize redirect
A weakness has been identified in Intelliants Subrion CMS up to 4.2.1. This vulnerability affects the function iaUsers::authorize of the file front/login.php of the component Login Page. This manipulation of the argument $SERVER['HTTPREFERER'] causes open redirect. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
Which deployments are affected?
Intelliants Subrion CMS versions up to and including 4.2.1 are identified as affected. The issue is in the Login Page component, specifically iaUsers::authorize in front/login.php.
What does an attacker need to exploit this issue?
The attack can be performed remotely and requires user interaction. Exploitation involves manipulating the HTTP Referer value so that the login flow redirects the user to an attacker-controlled destination.
Is public exploit information available?
Yes. An exploit has been made public and could be used in attacks.
Is a vendor fix available?
The provided information does not identify a fix. It states that the vendor was contacted early in the disclosure process but did not respond.