A vulnerability, which was classified as problematic, has been found in Adobe Magento Commerce up to 2.3.7/2.4.2/2.4.2-p1. Affected by this issue is an unknown function of the component Multishipping Module. Upgrading eliminates this vulnerability.
Adobe Magento Commerce up to 2.3.7/2.4.2/2.4.2-p1 Multishipping Module information disclosure
- Virtual Patching
- September 2, 2021
- 7:04 am
CVE-2023-20887 : VMWARE ARIA OPERATIONS FOR NETWORKS 6.X COMMAND INJECTION
Description Aria Operations for Networks contains a command injection vulnerability. A malicious actor with network access to VMware Aria Operations
CVE-2023-29632 : JMSPAGEBUILDER 3.X ON PRESTASHOP AJAX_JMSPAGEBUILDER.PHP SQL INJECTION
Description PrestaShop jmspagebuilder 3.x is vulnerable to SQL Injection via ajax_jmspagebuilder.php. References https://friends-of-presta.github.io/security-advisories/modules/2023/03/13/jmspagebuilder.html For More Information MITRE
CVE-2023-3065 : MOBATIME AMXGT100 UP TO 1.3.20 IMPROPER AUTHENTICATION
Description Improper Authentication vulnerability in Mobatime mobile application AMXGT100 allows Authentication Bypass.This issue affects Mobatime mobile application AMXGT100 through 1.3.20.