Security Advisory

CVE-2019-8230

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-11-05 23:57:36
Last updated 2024-08-04 21:10:33
Assigner adobe
State PUBLISHED

Description

In Magentoprior to 1.9.4.3, and Magento prior to 1.14.4.3, an authenticated user with administrative privileges to edit configuration settings can execute arbitrary code through a crafted support/output path.