Symphony-Cms / Symphony Cms
4 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2024-41614 | symphonycms <=2.7.10 is vulnerable to Cross Site Scripting (XSS) in the Comment component for articles. | MEDIUM | 4.8 | Aug 13, 2024 |
| CVE-2024-41613 | A Cross Site Scripting (XSS) vulnerability in Symphony CMS 2.7.10 allows remote attackers to inject arbitrary web script or HTML by editing note. | MEDIUM | 6.1 | Aug 13, 2024 |
| CVE-2011-4341 | Multiple SQL injection vulnerabilities in symphony/content/content.publish.php in Symphony CMS 2.2.3 and possibly other versions before 2.2.4 allow remote auth… | MEDIUM | 4.3 | Feb 12, 2012 |
| CVE-2011-4340 | Multiple cross-site scripting (XSS) vulnerabilities in Symphony CMS 2.2.3 and possibly other versions before 2.2.4 allow remote authenticated users with Author… | LOW | 1.3 | Feb 12, 2012 |
Showing 1 to 4 of 4 CVEs