Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-8109

A remote code execution vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An authenticated user can craft a malicious CSRF payload that can result in arbitrary command execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 60.8%
CVSS Severity
CVSS v3 Score 8.0
CVSS v2 Score 6.0
Products affected by CVE-2019-8109


Contact Us

Shodan ® - All rights reserved