Home
MEDIUM: 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:NDefault status
affected
Any version
affected
Description
Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and have a low impact on integrity. Exploitation of this issue does not require user interaction.
Problem types
Improper Access Control (CWE-284)
Product status
Any version
References
helpx.adobe.com/security/products/magento/apsb24-73.html
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.