vendor:
SymphonyCMS
by:
SunCSR
5.5
CVSS
MEDIUM
Persistent Cross-Site Scripting
79
CWE
Product Name: SymphonyCMS
Affected Version From: 3.0.0
Affected Version To: 3.0.0
Patch Exists: YES
Related CWE:
CPE: a:symphonycms:symphonycms:3.0.0
Platforms Tested: Windows
2020
SymphonyCMS 3.0.0 – Persistent Cross-Site Scripting
Cross-site scripting (XSS) vulnerabilities in Symphony CMS 3.0.0 allow remote attackers to inject arbitrary web script or HTML.
Mitigation:
Update to the latest version of Symphony CMS to fix the XSS vulnerability.