cpe:/a:getsymphony:symphony_cms:2.6.11 CVE-2017-7694 2017-04-11T19:59:00.203-04:00 2017-04-17T08:49:06.633-04:00 6.5 NETWORK LOW SINGLE_INSTANCE PARTIAL PARTIAL PARTIAL http://nvd.nist.gov 2017-04-16T18:11:56.500-04:00 BID 97594 MISC http://www.math1as.com/symphonycms_2.7_exec.txt MISC https://github.com/symphonycms/symphony-2/commit/e30a18f8f09dca836e141bf126a26e565c9a2bc7 MISC https://github.com/symphonycms/symphony-2/issues/2655 Remote Code Execution vulnerability in symphony/content/content.blueprintsdatasources.php in Symphony CMS through 2.6.11 allows remote attackers to execute code and get a webshell from the back-end. The attacker must be authenticated and enter PHP code in the datasource editor or event editor.