V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

66 / 66
Vendor: intelliants×Clear all
7.2
CVE-2018-19422CVE
/panel/uploads in Subrion CMS 4.2.1 allows remote attackers to execute arbitrary PHP code via a…
2018-01-01
EPSS65.1%
pct 99
9.8
CVE-2017-11444CVE
Subrion CMS before 4.1.5.10 has a SQL injection vulnerability in /front/search.php via the $_GE…
2017-01-01Pre-auth
EPSS13.1%
pct 95
4.3
CVE-2012-5452CVE
Multiple cross-site scripting (XSS) vulnerabilities in Subrion CMS 2.2.1 allow remote attackers…
2012-01-01
EPSS5.1%
pct 91
4.3
CVE-2012-4771CVE
Multiple cross-site scripting (XSS) vulnerabilities in Subrion CMS before 2.2.3 allow remote at…
2012-01-01
EPSS4.4%
pct 90
4.3
CVE-2011-5211CVE
Cross-site scripting (XSS) vulnerability in the poll module in Subrion CMS 2.0.4 allows remote …
2011-01-01
EPSS3.9%
pct 88
7.5
CVE-2012-4772CVE
SQL injection vulnerability in register/ in Subrion CMS before 2.2.3 allows remote attackers to…
2012-01-01
EPSS3.7%
pct 88
6.1
CVE-2018-14840CVE
uploads/.htaccess in Subrion CMS 4.2.1 allows XSS because it does not block .html file uploads …
2018-01-01Pre-auth
EPSS3.7%
pct 88
6.8
CVE-2012-4773CVE
Multiple cross-site request forgery (CSRF) vulnerabilities in Subrion CMS before 2.2.3 allow re…
2012-01-01
EPSS3.5%
pct 87
7.5
CVE-2011-5212CVE
SQL injection vulnerability in admin/index.php in Subrion CMS 2.0.4 allows remote attackers to …
2011-01-01
EPSS3.4%
pct 87
6.1
CVE-2020-35437CVE
Subrion CMS 4.2.1 is affected by: Cross Site Scripting (XSS) through the avatar[path] parameter…
2020-01-01Pre-auth
EPSS3.0%
pct 85
6.1
CVE-2020-18324CVE
Cross Site Scripting (XSS) vulnerability exists in Subrion CMS 4.2.1 via the q parameter in the…
2020-01-01Pre-auth
EPSS2.7%
pct 83
8.8
CVE-2020-18326CVE
Cross Site Request Forgery (CSRF) vulnerability exists in Intelliants Subrion CMS v4.2.1 via th…
2020-01-01Pre-auth
EPSS2.2%
pct 80
6.1
CVE-2020-18325CVE
Multilple Cross Site Scripting (XSS) vulnerability exists in Intelliants Subrion CMS v4.2.1 in …
2020-01-01Pre-auth
EPSS2.1%
pct 79
9.8
CVE-2017-5543CVE
includes/classes/ia.core.users.php in Subrion CMS 4.0.5 allows remote attackers to conduct PHP …
2017-01-01Pre-auth
EPSS2.0%
pct 78
6.8
CVE-2009-1659CVE
Unrestricted file upload vulnerability in admin/uploadimage.php in eLitius 1.0 allows remote at…
2009-01-01
EPSS2.0%
pct 77
5.4
CVE-2019-17225CVE
Subrion 4.2.1 allows XSS via the panel/members/ Username, Full Name, or Email field, aka an "Ad…
2019-01-01
EPSS1.9%
pct 77
9.8
CVE-2017-6013CVE
Subrion CMS 4.0.5.10 has SQL injection in admin/database/ via the query parameter.
2017-01-01Pre-auth
EPSS1.5%
pct 71
4.3
CVE-2008-6924CVE
Multiple cross-site scripting (XSS) vulnerabilities in register.php in eSyndiCat Directory 2.2 …
2008-01-01
EPSS1.5%
pct 70
6.5
CVE-2015-4129CVE
SQL injection vulnerability in Subrion CMS before 3.3.3 allows remote authenticated users to ex…
2015-01-01
EPSS1.4%
pct 68
8.8
CVE-2019-7357CVE
Subrion CMS 4.2.1 has CSRF in panel/modules/plugins/. The attacker can remotely activate/deacti…
2019-01-01Pre-auth
EPSS1.4%
pct 68
9.8
CVE-2020-18155CVE
SQL Injection vulnerability in Subrion CMS v4.2.1 in the search page if a website uses a PDO co…
2020-01-01Pre-auth
EPSS1.3%
pct 67
8.8
CVE-2021-43464CVE
A Remiote Code Execution (RCE) vulnerability exiss in Subrion CMS 4.2.1 via modified code in a …
2021-01-01
EPSS1.3%
pct 66
8.8
CVE-2023-46947CVE
Subrion 4.2.1 has a remote command execution vulnerability in the backend.
2023-01-01
EPSS1.3%
pct 66
7.2
CVE-2021-41947CVE
A SQL injection vulnerability exists in Subrion CMS v4.2.1 in the visual-mode.
2021-01-01
EPSS1.1%
pct 62
9.8
CVE-2017-11445CVE
Subrion CMS before 4.1.6 has a SQL injection vulnerability in /front/actions.php via the $_POST…
2017-01-01Pre-auth
EPSS1.1%
pct 62
6.1
CVE-2017-10795CVE
Cross-site scripting (XSS) vulnerability in Subrion CMS 4.1.4 allows remote attackers to inject…
2017-01-01Pre-auth
EPSS1.1%
pct 62
4.3
CVE-2010-4504CVE
Multiple cross-site scripting (XSS) vulnerabilities in eSyndiCat Directory 2.3 allow remote att…
2010-01-01
EPSS1.1%
pct 62
6.1
CVE-2020-23761CVE
Cross Site Scripting (XSS) vulnerability in subrion CMS Version <= 4.2.1 allows remote attacker…
2020-01-01Pre-auth
EPSS1.0%
pct 58
4.3
CVE-2014-9120CVE
Cross-site scripting (XSS) vulnerability in Subrion CMS before 3.2.3 allows remote attackers to…
2014-01-01
EPSS1.0%
pct 57
6.1
CVE-2019-20389CVE
An XSS issue was identified on the Subrion CMS 4.2.1 /panel/configuration/general settings page…
2019-01-01Pre-auth
EPSS0.9%
pct 56
6.1
CVE-2019-11406CVE
Subrion CMS 4.2.1 allows _core/en/contacts/ XSS via the name, email, or phone parameter.
2019-01-01Pre-auth
EPSS0.9%
pct 56
6.5
CVE-2020-12467CVE
Subrion CMS 4.2.1 allows session fixation via an alphanumeric value in a session cookie.
2020-01-01Pre-auth
EPSS0.9%
pct 55
6.1
CVE-2018-11317CVE
Subrion CMS before 4.1.4 has XSS.
2018-01-01Pre-auth
EPSS0.9%
pct 55
6.8
CVE-2009-1506CVE
SQL injection vulnerability in classes/Xp.php in eLitius 1.0 allows remote attackers to execute…
2009-01-01
EPSS0.9%
pct 54
6.5
CVE-2020-12469CVE
admin/blocks.php in Subrion CMS through 4.2.1 allows PHP Object Injection (with resultant file …
2020-01-01
EPSS0.9%
pct 53
7.8
CVE-2020-12468CVE
Subrion CMS 4.2.1 allows CSV injection via a phrase value within a language. This is related to…
2020-01-01
EPSS0.9%
pct 53
6.1
CVE-2023-43875CVE
Multiple Cross-Site Scripting (XSS) vulnerabilities in installation of Subrion CMS v.4.2.1 allo…
2023-01-01Pre-auth
EPSS0.8%
pct 50
5.4
CVE-2019-7356CVE
Subrion CMS v4.2.1 allows XSS via the panel/phrases/ VALUE parameter.
2019-01-01
EPSS0.7%
pct 49
8.8
CVE-2017-6069CVE
Subrion CMS 4.0.5 has CSRF in admin/blog/add/. The attacker can add any tag, and can optionally…
2017-01-01Pre-auth
EPSS0.7%
pct 49
6.1
CVE-2018-15563CVE
_core/admin/pages/add/ in Subrion CMS 4.2.1 has XSS via the titles[en] parameter.
2018-01-01Pre-auth
EPSS0.7%
pct 47
Select a vulnerability on the left to open the preview.