Количество 2
Количество 2
CVE-2019-7942
больше 6 лет назад
A remote code execution vulnerability exists in Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. An authenticated user with admin privileges to create or edit a product can execute arbitrary code via malicious XML layout updates.
CVSS3: 7.2
EPSS: Низкий
GHSA-vvf9-fxhv-4rgj
больше 3 лет назад
Magento 2 Community Edition RCE
CVSS3: 7.2
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-7942 A remote code execution vulnerability exists in Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. An authenticated user with admin privileges to create or edit a product can execute arbitrary code via malicious XML layout updates. | CVSS3: 7.2 | 1% Низкий | больше 6 лет назад | |
GHSA-vvf9-fxhv-4rgj Magento 2 Community Edition RCE | CVSS3: 7.2 | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20