Description
Adobe Commerce versions 2.4.7, 2.4.6-p5, 2.4.5-p7, 2.4.4-p8 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitrary code execution. A high-privilege attacker could exploit this vulnerability by uploading a malicious file to the system, which could then be executed. Exploitation of this issue does not require user interaction.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-34633 | Adobe Commerce versions 2.4.7, 2.4.6-p5, 2.4.5-p7, 2.4.4-p8 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitrary code execution. A high-privilege attacker could exploit this vulnerability by uploading a malicious file to the system, which could then be executed. Exploitation of this issue does not require user interaction. |
References
History
No history.
Status: PUBLISHED
Assigner: adobe
Published:
Updated: 2024-08-02T02:43:00.355Z
Reserved: 2024-04-30T19:50:50.902Z
Link: CVE-2024-34110
Updated: 2024-08-02T02:43:00.355Z
Status : Modified
Published: 2024-06-13T09:15:13.137
Modified: 2024-11-21T09:18:07.297
Link: CVE-2024-34110
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD