Cross-site scripting (XSS) vulnerability in Subrion CMS before 3.2.3 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to subrion/search/.
| Software | From | Fixed in |
|---|---|---|
intelliants / subrion
|
- | 3.2.2.x |