CVE-2012-5574

Publication date

2012-12-18 01:00:00

Family

redhat

State

PUBLISHED

Description

lib/form/sfForm.class.php in Symfony CMS before 1.4.20 allows remote attackers to read arbitrary files via a crafted upload request.