Cross-Site Scripting in Subrion CMS by Subrion
CVE-2018-16631
5.4MEDIUM
What is CVE-2018-16631?
Subrion CMS version 4.2.1 is susceptible to a Cross-Site Scripting (XSS) vulnerability, allowing attackers to inject malicious scripts through the SITE TITLE parameter located in the panel/configuration/general settings. This can lead to unauthorized access to sensitive user data or the execution of malicious code in a user's browser, posing a significant risk to the security and integrity of web applications using this CMS.