OpenMage LTS is an e-commerce platform. Prior to versions 19.4.22 and 20.0.19, Magento admin users with access to the customer media could execute code on the server. Versions 19.4.22 and 20.0.19 contain a patch for this issue.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: GitHub_M

Published: 2023-01-27T18:02:08.763Z

Updated:

Reserved: 2021-09-15T18:43:17.245Z


Link: CVE-2021-41143

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-01-27T19:15:09.377

Modified: 2023-11-07T03:38:51.270


Link: CVE-2021-41143

JSON object: View

cve-icon Redhat Information

No data.