[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2018-19789 -- symfony

ID: oval:org.secpod.oval:def:2000115Date: (C)2019-04-21   (M)2023-11-13
Class: VULNERABILITYFamily: unix




An issue was discovered in Symfony 2.7.x before 2.7.50, 2.8.x before 2.8.49, 3.x before 3.4.20, 4.0.x before 4.0.15, 4.1.x before 4.1.9, and 4.2.x before 4.2.1. When using the scalar type hint `string` in a setter method of a class that"s the `data_class` of a form, and when a file upload is submitted to the corresponding field instead of a normal text input, then `UploadedFile::__toString` is called which will then return and disclose the path of the uploaded file. If combined with a local file inclusion issue in certain circumstances this could escalate it to a Remote Code Execution.

Platform:
Debian 8.x
Debian 9.x
Product:
php-symfony-browser-kit
Reference:
CVE-2018-19789
CVE    1
CVE-2018-19789
CPE    4
cpe:/o:debian:debian_linux:8.x
cpe:/o:debian:debian_linux:9.x
cpe:/a:symfony:php-symfony-browser-kit
cpe:/o:debian:debian_linux:8.0
...

© SecPod Technologies