Skip to main content

New Critical RCE Bug Found in Adobe Commerce, Magento


Jasper_The_Rasper
Moderator
Forum|alt.badge.img+54

 

February 18, 2022  By Lisa Vaas

 

Adobe updated its recent out-of-band security advisory to add another critical bug, while researchers put out a PoC for the one it emergency-fixed last weekend.

Yet another zero-day bug has been discovered in the Magento Open Source and Adobe Commerce platforms, while researchers have created a working proof-of-concept (PoC) exploit for the recently patched CVE-2022-24086 vulnerability that came under active attack and forced Adobe to push out an emergency patch last weekend.

Attackers could use either exploit to achieve remote code-execution (RCE) from an unauthenticated user.

 

>> Full Article <<

0 replies

Be the first to reply!

Reply