CVE-2017-6069
EUVD-2017-1513627.03.2017, 02:59
Subrion CMS 4.0.5 has CSRF in admin/blog/add/. The attacker can add any tag, and can optionally insert XSS via the tags parameter.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| intelliants | subrion_cms | 4.0.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration