{"id":"GHSA-xxf8-fpmr-fw7v","summary":"Withdrawn Advisory: Subrion CMS vulnerable to SQL Injection","details":"## Withdrawn Advisory\n\nThis advisory has been withdrawn because it was determined to not be a vulnerability. Please see the issue [here](https://github.com/intelliants/subrion/issues/910#issuecomment-2174012538) for more information.\n\n## Original Description\n\nSubrion CMS 4.2.1 is vulnerable to SQL Injection via ia.core.mysqli.php.","aliases":["CVE-2024-25400"],"modified":"2026-09-10T03:50:00.330726123Z","published":"2024-02-27T18:31:01Z","withdrawn":"2024-06-18T16:34:05Z","database_specific":{"github_reviewed_at":"2024-02-27T21:48:32Z","nvd_published_at":"2024-02-27T16:15:46Z","cwe_ids":[],"severity":"MODERATE","github_reviewed":true},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-25400"},{"type":"WEB","url":"https://github.com/intelliants/subrion/issues/910"},{"type":"WEB","url":"https://cwe.mitre.org/data/definitions/89.html"},{"type":"PACKAGE","url":"https://github.com/intelliants/subrion"},{"type":"WEB","url":"https://subrion.org"}],"affected":[{"package":{"name":"intelliants/subrion","ecosystem":"Packagist","purl":"pkg:composer/intelliants/subrion"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"last_affected":"4.2.1"}]}],"versions":["v4.0.0","v4.0.1","v4.0.2","v4.0.3","v4.0.4","v4.0.5","v4.1.0","v4.1.1","v4.1.2","v4.1.3","v4.1.4","v4.1.5","v4.2.0","v4.2.1"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2024/02/GHSA-xxf8-fpmr-fw7v/GHSA-xxf8-fpmr-fw7v.json"}}],"schema_version":"1.9.0"}