CVE-2010-4335
EPSS 82.6%CakePHP allows remote attackers to modify internal Cake cache and execute arbitrary code
發布日:2022/5/17修改日:2026/4/28
描述
The _validatePost function in libs/controller/components/security.php in CakePHP 1.3.x through 1.3.5 and 1.2.8 allows remote attackers to modify the internal Cake cache and execute arbitrary code via a crafted data[_Token][fields] value that is processed by the unserialize function, as demonstrated by modifying the file_map cache to execute arbitrary local files.
受影響套件(2)
- Debian/cakephpfrom 0, < 1.3.2-1.1
- Packagist/cakephp/cakephp>= 1.2.8, < 1.3.6
參考連結(10)
- ADVISORYhttps://nvd.nist.gov/vuln/detail/CVE-2010-4335
- ADVISORYhttps://security-tracker.debian.org/tracker/CVE-2010-4335
- PATCHhttps://github.com/cakephp/cakephp
- WEBhttp://malloc.im/CakePHP-unserialize.txt
- WEBhttp://packetstormsecurity.org/files/view/95847/burnedcake.py.txt
- WEBhttp://secunia.com/advisories/42211
- WEBhttp://securityreason.com/securityalert/8026
- WEBhttps://github.com/cakephp/cakephp/commit/e431e86aa4301ced4273dc7919b59362cbb353cb
- WEBhttp://www.exploit-db.com/exploits/16011
- WEBhttp://www.osvdb.org/69352