6.4
CVSSv2

CVE-2012-6431

Published: 27/12/2012 Updated: 07/01/2013
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

Symfony 2.0.x prior to 2.0.20 does not process URL encoded data consistently within the Routing and Security components, which allows remote malicious users to bypass intended URI restrictions via a doubly encoded string.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sensiolabs symfony 2.0.18

sensiolabs symfony 2.0.16

sensiolabs symfony 2.0.9

sensiolabs symfony 2.0.7

sensiolabs symfony 2.0.2

sensiolabs symfony 2.0.15

sensiolabs symfony 2.0.14

sensiolabs symfony 2.0.13

sensiolabs symfony 2.0.12

sensiolabs symfony 2.0.11

sensiolabs symfony 2.0.0

sensiolabs symfony 2.0.6

sensiolabs symfony 2.0.5

sensiolabs symfony 2.0.4

sensiolabs symfony 2.0.3

sensiolabs symfony 2.0.19

sensiolabs symfony 2.0.17

sensiolabs symfony 2.0.10

sensiolabs symfony 2.0.8

sensiolabs symfony 2.0.1