6.1
CVSSv3

CVE-2020-35437

Published: 26/12/2020 Updated: 17/07/2022
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Subrion CMS 4.2.1 is affected by: Cross Site Scripting (XSS) through the avatar[path] parameter in a POST request to the /_core/profile/ URI.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

intelliants subrion cms 4.2.1

Exploits

Subrion CMS version 421 suffers from a cross site scripting vulnerability Original discovered of cross site scripting in this version is attributed to Ismail Tasdelen in July of 2018 ...