CVE-2014-9120
EPSS 0.33%Subrion CMS Cross-site scripting in search
發布日:2022/5/14修改日:2023/11/8
描述
A cross-site scripting (XSS) vulnerability in Subrion CMS before 3.2.3 allows remote attackers to inject arbitrary web script or HTML via the `PATH_INFO` to `subrion/search/`.
受影響套件(1)
- Packagist/intelliants/subrionfrom 0, < 3.2.3