5
CVSSv2

CVE-2015-3457

Published: 29/04/2015 Updated: 06/12/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Magento Community Edition (CE) 1.9.1.0 and Enterprise Edition (EE) 1.14.1.0 allow remote malicious users to bypass authentication via the forwarded parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

magento magento 1.14.1.0

magento magento 1.9.1.0