5
CVSSv2

CVE-2019-7861

Published: 02/08/2019 Updated: 06/08/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Insufficient server-side validation of user input could allow an malicious user to bypass file upload restrictions in Magento 2.1 before 2.1.18, Magento 2.2 before 2.2.9, Magento 2.3 before 2.3.2.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

magento magento