Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Subrion Subscribe
Filtered by product Subrion Cms
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-14836 1 Subrion 1 Subrion Cms 2019-10-02 4.0 MEDIUM 6.5 MEDIUM
Subrion 4.2.1 is vulnerable to Improper Access control because user groups not having access to the Admin panel are able to access it (but not perform actions) if the Guests user group has access to the Admin panel.
CVE-2018-14835 1 Subrion 1 Subrion Cms 2018-09-28 3.5 LOW 5.4 MEDIUM
Subrion CMS v4.2.1 is vulnerable to Stored XSS because of no escaping added to the tooltip information being displayed in multiple areas.