ZeroHour

CVE-2019-8124

CVSS 3.1
4.9 medium
EPSS
<1%p60
Published
()
Modified
Description

An insufficient logging and monitoring vulnerability exists in Magento 2.1 prior to 2.1.19, Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3. Failure to track admin actions related to design configuration could lead to repudiation attacks.

Vendors
magento
Products
magento
Ecosystems
E-commerce
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.