ZeroHour

CVE-2019-11458

CVSS 3.0
7.5 high
EPSS
2%p80
Published
()
Modified
Description

An issue was discovered in SmtpTransport in CakePHP 3.7.6. An unserialized object with modified internal properties can trigger arbitrary file overwriting upon destruction.

Vendors
cakephp
Products
cakephp
Weakness
CWE-502
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.