Home

Description

An issue was discovered in Subrion CMS 4.2.1, allowing authenticated adminitrators or moderators with access to the built-in Run SQL Query feature under the SQL Tool admin panel - to gain escalated privileges in the context of the SQL query tool.

PUBLISHED Reserved 2025-08-17 | Published 2025-09-11 | Updated 2025-09-11 | Assigner mitre

References

github.com/intelliants/subrion/issues/913

cve.org (CVE-2025-56556)

nvd.nist.gov (CVE-2025-56556)

Download JSON