CVE-2020-12469

admin/blocks.php in Subrion CMS through 4.2.1 allows PHP Object Injection (with resultant file deletion) via serialized data in the subpages value within a block to blocks/edit.
Configurations

Configuration 1 (hide)

cpe:2.3:a:intelliants:subrion:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2020-04-29 21:15

Updated : 2024-02-28 17:47


NVD link : CVE-2020-12469

Mitre link : CVE-2020-12469

CVE.ORG link : CVE-2020-12469


JSON object : View

Products Affected

intelliants

  • subrion
CWE
CWE-502

Deserialization of Untrusted Data