ZeroHour

CVE-2019-7858

CVSS 3.0
7.5 high
EPSS
<1%p52
Published
()
Modified
Description

A cryptographic flaw in Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9 and Magento 2.3 prior to 2.3.2 resulted in storage of sensitive information with an algorithm that is insufficiently resistant to brute force attacks.

Vendors
magento
Products
magento
Ecosystems
E-commerce
Weakness
CWE-327
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.