Getsymphony
18 known vulnerabilities
Top Products
A XML External Entity (XXE) vulnerability was discovered in symphony\lib\toolkit\class.xmlelement.php in Symphony 2.7.10
Cross-site scripting (XSS) vulnerabilities in Symphony CMS 3.0.0 allow remote attackers to inject arbitrary web script o
content/content.blueprintsevents.php in Symphony CMS 3.0.0 allows XSS via fields['name'] to appendSubheading.
content/content.blueprintspages.php in Symphony 2.7.6 has XSS via the pages content page.
Symphony 2 2.6.11 has XSS in the meta[navigation_group] parameter to content/content.blueprintssections.php.
Remote Code Execution vulnerability in symphony/content/content.blueprintsdatasources.php in Symphony CMS through 2.6.11
Symphony 2.6.9 has XSS in publish/notes/edit/##/saved/ via the bottom form field.
Cross-site scripting (XSS) vulnerability in template/usererror.missing_extension.php in Symphony CMS before 2.6.10 allow
Directory traversal vulnerability in template/usererror.missing_extension.php in Symphony CMS before 2.6.10 allows remot
Session fixation vulnerability in Symphony CMS 2.6.7, when session.use_only_cookies is disabled, allows remote attackers
Multiple cross-site scripting (XSS) vulnerabilities in content/content.systempreferences.php in Symphony CMS before 2.6.
Multiple cross-site scripting (XSS) vulnerabilities in Symphony CMS 2.6.3 allow remote attackers to inject arbitrary web
Frequently Asked Questions
How many CVEs affect Getsymphony?
Getsymphony has 18 CVE records in our database, including 1 critical and 4 high severity vulnerabilities.
What are the most severe Getsymphony vulnerabilities?
Getsymphony has 1 critical severity (CVSS 9.0+) and 4 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Getsymphony vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Getsymphony products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Getsymphony Vulnerabilities
CyberStrike scans your infrastructure for Getsymphony vulnerabilities and provides real-time remediation guidance.
Get Started