Field Assessment
AI analysis pending.
CVE
CVE-2015-2308
Severity
MEDIUM
CVSS
6.8
EPSS
1.36%
Original Filing — NVD Description
Eval injection vulnerability in the HttpCache class in HttpKernel in Symfony 2.x before 2.3.27, 2.4.x and 2.5.x before 2.5.11, and 2.6.x before 2.6.6 allows remote attackers to execute arbitrary PHP code via a language="php" attribute of a SCRIPT element.