CVE-2020-9583
- EPSS 3.1%
- Veröffentlicht 26.06.2020 21:15:17
- Zuletzt bearbeitet 21.11.2024 05:40:54
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a command injection vulnerability. Successful exploitation could lead to arbitrary code execution.
CVE-2020-9584
- EPSS 0.17%
- Veröffentlicht 26.06.2020 21:15:17
- Zuletzt bearbeitet 21.11.2024 05:40:54
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a stored cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
CVE-2020-9585
- EPSS 6.22%
- Veröffentlicht 26.06.2020 21:15:17
- Zuletzt bearbeitet 21.11.2024 05:40:54
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a defense-in-depth security mitigation vulnerability. Successful exploitation could lead to arbitrary code execution.
CVE-2020-9587
- EPSS 0.55%
- Veröffentlicht 26.06.2020 21:15:17
- Zuletzt bearbeitet 21.11.2024 05:40:55
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have an authorization bypass vulnerability. Successful exploitation could lead to potentially unauthorized product discounts.
CVE-2020-9588
- EPSS 1.19%
- Veröffentlicht 26.06.2020 21:15:17
- Zuletzt bearbeitet 21.11.2024 05:40:55
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have an observable timing discrepancy vulnerability. Successful exploitation could lead to signature verification bypass.
CVE-2020-9591
- EPSS 1.31%
- Veröffentlicht 26.06.2020 21:15:17
- Zuletzt bearbeitet 21.11.2024 05:40:55
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a defense-in-depth security mitigation vulnerability. Successful exploitation could lead to unauthorized access to admin panel.
CVE-2020-9630
- EPSS 0.84%
- Veröffentlicht 26.06.2020 21:15:17
- Zuletzt bearbeitet 21.11.2024 05:40:59
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a business logic error vulnerability. Successful exploitation could lead to privilege escalation.
- EPSS 7.68%
- Veröffentlicht 26.06.2020 21:15:17
- Zuletzt bearbeitet 21.11.2024 05:40:59
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a security mitigation bypass vulnerability. Successful exploitation could lead to arbitrary code execution.
- EPSS 7.99%
- Veröffentlicht 26.06.2020 21:15:17
- Zuletzt bearbeitet 21.11.2024 05:40:59
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a security mitigation bypass vulnerability. Successful exploitation could lead to arbitrary code execution.
CVE-2020-9576
- EPSS 3.1%
- Veröffentlicht 26.06.2020 21:15:16
- Zuletzt bearbeitet 21.11.2024 05:40:53
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a command injection vulnerability. Successful exploitation could lead to arbitrary code execution.