Remote Code Execution vulnerability in symphony/content/content.blueprintsdatasources.php in Symphony CMS through 2.6.11 allows remote attackers to execute code and get a webshell from the back-end. The attacker must be authenticated and enter PHP code in the datasource editor or event editor.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2017-04-11T23:00:00
Updated: 2024-08-05T16:12:28.185Z
Reserved: 2017-04-11T00:00:00
Link: CVE-2017-7694
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-04-11T23:59:00.203
Modified: 2024-11-21T03:32:28.830
Link: CVE-2017-7694
Redhat
No data.