OpenMage LTS is an e-commerce platform. Prior to versions 19.4.22 and 20.0.19, Magento admin users with access to the customer media could execute code on the server. Versions 19.4.22 and 20.0.19 contain a patch for this issue.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2023-01-27T18:02:08.763Z

Updated: 2024-08-04T02:59:31.758Z

Reserved: 2021-09-15T18:43:17.245Z

Link: CVE-2021-41143

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-01-27T19:15:09.377

Modified: 2023-11-07T03:38:51.270

Link: CVE-2021-41143

cve-icon Redhat

No data.