Out-of-date Version (CakePHP Framework)
Summary#
Invicti identified the target web site is using CakePHP Framework and detected that it is out of date.
Impact#
Since this is an old version of the software, it may be vulnerable to attacks.
Remediation#
Please upgrade your installation of CakePHP to the latest stable version.
Classifications#
Invicti Security Insights
- Sven Morgenroth Talks About PHP Object Injection Vulnerabilities on Paul’s Security Weekly Podcast
- End of Support for PHP 5 and PHP 7.0
- The Powerful Resource of PHP Stream Wrappers
- Sven Morgenroth Talks About PHP Type Juggling on Paul’s Security Weekly Podcast
- Detailed Explanation of PHP Type Juggling Vulnerabilities