Enhancement: cves/2017/CVE-2017-11444.yaml by mp

patch-1
MostInterestingBotInTheWorld 2022-05-10 12:57:43 -04:00
parent 197b244ab0
commit f75e72262f
1 changed files with 5 additions and 2 deletions

View File

@ -1,13 +1,14 @@
id: CVE-2017-11444 id: CVE-2017-11444
info: info:
name: Subrion CMS SQL Injection name: Subrion CMS <4.1.5.10 - SQL Injection
author: dwisiswant0 author: dwisiswant0
severity: critical severity: critical
description: Subrion CMS before 4.1.5.10 has a SQL injection vulnerability in /front/search.php via the $_GET array. description: "Subrion CMS before 4.1.5.10 has a SQL injection vulnerability in /front/search.php via the $_GET array."
reference: reference:
- https://github.com/intelliants/subrion/issues/479 - https://github.com/intelliants/subrion/issues/479
- https://mp.weixin.qq.com/s/89mCnjUCvmptLsKaeVlC9Q - https://mp.weixin.qq.com/s/89mCnjUCvmptLsKaeVlC9Q
- https://nvd.nist.gov/vuln/detail/CVE-2017-11444
classification: classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
cvss-score: 9.8 cvss-score: 9.8
@ -28,3 +29,5 @@ requests:
- type: status - type: status
status: status:
- 200 - 200
# Enhanced by mp on 2022/05/10