CVE-2018-14836
Published Aug 2, 2018Subrion 4.2.1 is vulnerable to Improper Access control because user groups not having access to the Admin panel are able to access it (but not perform actions) if the Guests user…
Vendor/product archive
2 CVEs tagged to subrion / subrion_cms — 0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.
Subrion 4.2.1 is vulnerable to Improper Access control because user groups not having access to the Admin panel are able to access it (but not perform actions) if the Guests user…
Subrion CMS v4.2.1 is vulnerable to Stored XSS because of no escaping added to the tooltip information being displayed in multiple areas.