Description
Phusion Passenger before 4.0.37 allows local users to write to certain files and directories via a symlink attack on (1) control_process.pid or a (2) generation-* file.
Remediation
References
Related Vulnerabilities
WordPress Plugin Duplicate Page SQL Injection (3.3)
WordPress Plugin Social Share Buttons-Social Pug Cross-Site Scripting (1.2.5)
WordPress Plugin 3D Slider Slice Box Multiple Cross-Site Scripting Vulnerabilities (1.0)
WordPress Plugin One Click Upsell Funnel for WooCommerce Unspecified Vulnerability (2.0.0)