4
CVSSv2

CVE-2020-15151

Published: 20/08/2020 Updated: 18/11/2021
CVSS v2 Base Score: 4 | Impact Score: 4.9 | Exploitability Score: 4.9
CVSS v3 Base Score: 8 | Impact Score: 5.8 | Exploitability Score: 1.6
VMScore: 356
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:N

Vulnerability Summary

OpenMage LTS prior to 19.4.6 and 20.0.2 allows malicious users to circumvent the `fromkey protection` in the Admin Interface and increases the attack surface for Cross Site Request Forgery attacks. This issue is related to Adobe's CVE-2020-9690. It is patched in versions 19.4.6 and 20.0.2.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

openmage openmage long term support

magento magento