Zowopsa kwambiri papulatifomu ya Magento e-commerce

Kampani ya Adobe anamasulidwa kukonzanso nsanja yotseguka yokonzekera malonda a e-commerce Magento (2.3.4, 2.3.3-p1 ndi 2.2.11), zomwe zimatenga pafupifupi 10% msika wamakina opanga malo ogulitsira pa intaneti (Adobe adakhala mwini wa Magento mu 2018). Kusinthaku kumachotsa ziwopsezo za 6, zomwe zitatu zimayikidwa pachiwopsezo chachikulu (zambiri sizinalengedwebe):

  • CVE-2020-3716 - kuthekera kwa kupha anthu owukira pochotsa deta yakunja;
  • CVE-2020-3718 - kudutsa njira zachitetezo zomwe zimatsogolera kuphatikizidwe kwa code yosagwirizana ndi seva;
  • CVE-2020-3719 ndi gawo loloweza m'malo la SQL lomwe limalola mwayi wopeza deta mu nkhokwe.

Source: opennet.ru

Kuwonjezera ndemanga