EN

critical

Adobe Magento Open Source: Code execution with administrator privileges possible

CERT-Bund (BSI) reports one vulnerability in Adobe Magento Open Source with severity critical. The stated impact is code execution with administrator privileges. The full description, affected versions and recommended action are available from CERT-Bund (BSI).

Attack vector
over the network
Access needed
none

What this means for you

An attacker can run their own code with administrator privileges. First check whether the system is reachable from the internet: if it is, the update takes precedence over the regular maintenance window.

Original source

CERT-Bund (BSI)

Contact

Reputation takes years. Destruction takes seconds.

Talk to us before somebody else does. The first conversation is free and we reply the same business day.