Medium severity5.4NVD Advisory· Published Aug 13, 2024· Updated Jun 17, 2026
CVE-2024-41613
CVE-2024-41613
Description
A Cross Site Scripting (XSS) vulnerability in Symphony CMS 2.7.10 allows remote attackers to inject arbitrary web script or HTML by editing note.
Affected products
3(expand)+ 2 more
- (no CPE)
- cpe:2.3:a:symphony-cms:symphony_cms:2.7.10:*:*:*:*:*:*:*
- (no CPE)range: =2.7.10
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.