Adobe Commerce versions 2.4.3-p2 (and earlier), 2.3.7-p3 (and earlier) and 2.4.4 (and earlier) are affected by an Improper Authorization vulnerability that could result in Privilege escalation. An attacker could leverage this vulnerability to access other user's data. Exploitation of this issue does not require user interaction.
References
Link | Resource |
---|---|
https://helpx.adobe.com/security/products/magento/apsb22-38.html | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: adobe
Published: 2022-08-09T00:00:00
Updated: 2022-08-16T19:43:53
Reserved: 2022-06-21T00:00:00
Link: CVE-2022-34256
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-08-16T21:15:10.163
Modified: 2022-08-31T12:54:46.707
Link: CVE-2022-34256
JSON object: View
Redhat Information
No data.
CWE