Enhancement: cves/2017/CVE-2017-11444.yaml by mp

patch-1
MostInterestingBotInTheWorld 2022-05-10 12:57:43 -04:00
parent 197b244ab0
commit f75e72262f
1 changed files with 5 additions and 2 deletions

View File

@ -1,13 +1,14 @@
id: CVE-2017-11444
info:
name: Subrion CMS SQL Injection
name: Subrion CMS <4.1.5.10 - SQL Injection
author: dwisiswant0
severity: critical
description: Subrion CMS before 4.1.5.10 has a SQL injection vulnerability in /front/search.php via the $_GET array.
description: "Subrion CMS before 4.1.5.10 has a SQL injection vulnerability in /front/search.php via the $_GET array."
reference:
- https://github.com/intelliants/subrion/issues/479
- https://mp.weixin.qq.com/s/89mCnjUCvmptLsKaeVlC9Q
- https://nvd.nist.gov/vuln/detail/CVE-2017-11444
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
cvss-score: 9.8
@ -28,3 +29,5 @@ requests:
- type: status
status:
- 200
# Enhanced by mp on 2022/05/10