CVE

Id
102362  
CVE No.
CVE-2017-5542  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in template/usererror.missing_extension.php in Symphony CMS before 2.6.10 allows remote attackers to inject arbitrary web script or HTML via the existing-folder parameter.  
Phase
Assigned (20170119)  
Votes
None (candidate not yet proposed)  
Comments