CVE-2020-12468

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/04/2020
Last modified:
01/05/2020

Description

Subrion CMS 4.2.1 allows CSV injection via a phrase value within a language. This is related to phrases/add/ and languages/download/.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:intelliants:subrion:4.2.1:*:*:*:*:*:*:*