QID 994887
Date Published: 2023-08-21
QID 994887: PHP (Composer) Security Update for pimcore/pimcore (GHSA-g7pj-3v97-3vxp)
The getObjectByToken function in Newsletter.php in the Pimcore_Tool_Newsletter module in pimcore 1.4.9 through 2.0.0 does not properly handle an object obtained by unserializing Lucene search data, which allows remote attackers to conduct PHP object injection attacks and execute arbitrary code via vectors involving a Zend_Pdf_ElementFactory_Proxy object and a pathname with a trailing \0 character.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-g7pj-3v97-3vxp for updates and patch information.
Vendor References
- GHSA-g7pj-3v97-3vxp -
github.com/advisories/GHSA-g7pj-3v97-3vxp
CVEs related to QID 994887
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-g7pj-3v97-3vxp | pimcore/pimcore |
|