Lucene search

K
osvGoogleOSV:GHSA-XHC3-5PGF-P576
HistoryMay 24, 2022 - 5:46 p.m.

subrion CMS Cross Site Scripting (XSS) vulnerability

2022-05-2417:46:56
Google
osv.dev
4
subrion cms
xss
vulnerability
payment gateway
remote attackers
web script
transactions tab

AI Score

6.2

Confidence

High

EPSS

0.001

Percentile

50.6%

Cross Site Scripting (XSS) vulnerability in subrion CMS Version <= 4.2.1 allows remote attackers to execute arbitrary web script via the “payment gateway” column on transactions tab.

AI Score

6.2

Confidence

High

EPSS

0.001

Percentile

50.6%

Related for OSV:GHSA-XHC3-5PGF-P576