Subrion · Subrion Cms · CVE-2011-5211
**Name of the Vulnerable Software and Affected Versions**
Subrion CMS version 2.0.4
**Description**
A cross-site scripting (XSS) issue exists in the poll module, allowing remote attackers to inject arbitrary web script or HTML via the `title` field.
**Recommendations**
For Subrion CMS version 2.0.4, consider restricting access to the poll module until a fix is available, and avoid using the `title` field in the poll module to minimize the risk of exploitation.