The Yaml::parse function in Symfony 2.0.x before 2.0.22 remote attackers to execute arbitrary PHP code via a PHP file, a different vulnerability than CVE-2013-1397.
                
            References
                    Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    No history.
Information
                Published : 2014-06-02 15:55
Updated : 2025-04-12 10:46
NVD link : CVE-2013-1348
Mitre link : CVE-2013-1348
CVE.ORG link : CVE-2013-1348
JSON object : View
Products Affected
                sensiolabs
- symfony
CWE
                
                    
                        
                        CWE-94
                        
            Improper Control of Generation of Code ('Code Injection')
