Arbitrary File Overwriting Vulnerability in SmtpTransport in CakePHP 3.7.6

Arbitrary File Overwriting Vulnerability in SmtpTransport in CakePHP 3.7.6

CVE-2019-11458 · MEDIUM Severity

AV:N/AC:L/AU:N/C:N/I:P/A:P

An issue was discovered in SmtpTransport in CakePHP 3.7.6. An unserialized object with modified internal properties can trigger arbitrary file overwriting upon destruction.

Learn more about our Internal Network Penetration Testing.