2.7

CVSS3.1

CVE-2024-45135 - Adobe Commerce | Improper Access Control (CWE-284)

Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An admin attacker could leverage this vulnerability to bypass security measures and have a low impact on integrity. Exโ€ฆ

๐Ÿ“… Published: Oct. 10, 2024, 9:57 a.m. ๐Ÿ”„ Last Modified: Oct. 11, 2024, 10:12 p.m.

3.1

CVSS3.1

CVE-2024-45120 - Adobe Commerce | Time-of-check Time-of-use (TOCTOU) Race Condition (CWE-367)

Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability that could lead to a security feature bypass. An attacker could exploit this vulnerability to alter a condition between the check and the useโ€ฆ

๐Ÿ“… Published: Oct. 10, 2024, 9:57 a.m. ๐Ÿ”„ Last Modified: Dec. 12, 2024, 9:02 p.m.

4.3

CVSS3.1

CVE-2024-45130 - Adobe Commerce | Improper Access Control (CWE-284)

Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and have a low impact on integโ€ฆ

๐Ÿ“… Published: Oct. 10, 2024, 9:57 a.m. ๐Ÿ”„ Last Modified: Oct. 11, 2024, 10:08 p.m.

6.5

CVSS3.1

CVE-2024-45132 - Adobe Commerce | Incorrect Authorization (CWE-863)

Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Improper Authorization vulnerability that could result in Privilege escalation. A low-privileged attacker could leverage this vulnerability to bypass security measures and affect confidentiality. Exploitaโ€ฆ

๐Ÿ“… Published: Oct. 10, 2024, 9:57 a.m. ๐Ÿ”„ Last Modified: Oct. 14, 2024, 11:15 a.m.

5.4

CVSS3.1

CVE-2024-45131 - Adobe Commerce | Incorrect Authorization (CWE-863)

Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Improper Authorization vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and have a low impact on confidโ€ฆ

๐Ÿ“… Published: Oct. 10, 2024, 9:57 a.m. ๐Ÿ”„ Last Modified: Oct. 14, 2024, 11:15 a.m.

8.8

CVSS3.1

CVE-2024-45148 - Adobe Commerce | Improper Authentication (CWE-287)

Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Improper Authentication vulnerability that could result in a security feature bypass. A low-privileged attacker could leverage this vulnerability to gain unauthorized access without proper credentials. Exโ€ฆ

๐Ÿ“… Published: Oct. 10, 2024, 9:57 a.m. ๐Ÿ”„ Last Modified: Oct. 16, 2024, 1:27 p.m.

2.7

CVSS3.1

CVE-2024-45134 - Adobe Commerce | Information Exposure (CWE-200)

Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Information Exposure vulnerability that could result in a security feature bypass. An admin attacker could leverage this vulnerability to have a low impact on confidentiality which may aid in further attaโ€ฆ

๐Ÿ“… Published: Oct. 10, 2024, 9:57 a.m. ๐Ÿ”„ Last Modified: Oct. 11, 2024, 10:12 p.m.

4.3

CVSS3.1

CVE-2024-45129 - Adobe Commerce | Improper Access Control (CWE-284)

Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Improper Access Control vulnerability that could result in Privilege escalation. A low-privileged attacker could leverage this vulnerability to bypass security measures and have a low impact on integrity.โ€ฆ

๐Ÿ“… Published: Oct. 10, 2024, 9:57 a.m. ๐Ÿ”„ Last Modified: Oct. 11, 2024, 10:09 p.m.

6.5

CVSS3.1

CVE-2024-45118 - Adobe Commerce | Improper Access Control (CWE-284)

Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and have high impact on integrโ€ฆ

๐Ÿ“… Published: Oct. 10, 2024, 9:57 a.m. ๐Ÿ”„ Last Modified: Oct. 10, 2024, 9:47 p.m.

2.7

CVSS3.1

CVE-2024-45149 - Adobe Commerce | Improper Access Control (CWE-284)

Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. A high-privileged attacker could leverage this vulnerability to bypass security measures and have a low impact on confโ€ฆ

๐Ÿ“… Published: Oct. 10, 2024, 9:57 a.m. ๐Ÿ”„ Last Modified: Dec. 12, 2024, 9:07 p.m.
Total resulsts: 349182
Page 8330 of 34,919
ยซ previous page ยป next page
Filters