Description
An issue was discovered in SmtpTransport in CakePHP 3.7.6. An unserialized object with modified internal properties can trigger arbitrary file overwriting upon destruction.
Remediation
References
Related Vulnerabilities
MongoDb Improper Input Validation Vulnerability (CVE-2015-1609)
Mailman Other Vulnerability (CVE-2002-0855)
Jboss EAP Inadequate Encryption Strength Vulnerability (CVE-2014-0224)
MySQL CVE-2012-1696 Vulnerability (CVE-2012-1696)
WordPress Plugin Question Answer Multiple Cross-Site Scripting Vulnerabilities (1.2.30)