CVE-2020-12468: Intelliants Subrion
High severity, CVSS 7.8. EPSS: 0.9% chance of exploitation in the next 30 days.
Subrion CMS 4.2.1 allows CSV injection via a phrase value within a language. This is related to phrases/add/ and languages/download/.
Affected products
- Intelliants Subrion: version 4.2.1 only
Published 2020-04-29. Last modified 2026-06-17.