CVE-2019-7872

CVE-2019-7872

An insecure direct object reference (IDOR) vulnerability exists in Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2 due to insufficient authorizations checks. This can be abused by a user with admin privileges to add users to company accounts or modify existing user details.

Source: CVE-2019-7872

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다