Magento version 2.4.0 and 2.3.5p1 (and earlier) are affected by an incorrect permissions issue vulnerability in the Inventory module. This vulnerability could be abused by authenticated users to modify inventory stock data without authorization.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: adobe
Published: 2020-11-09T00:39:43.340002Z
Updated: 2024-09-16T20:22:14.104Z
Reserved: 2020-08-19T00:00:00
Link: CVE-2020-24405
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-11-09T01:15:12.803
Modified: 2024-11-21T05:14:45.550
Link: CVE-2020-24405
Redhat
No data.