← Back

CVE-2024-45127

nvd nist
Published: Oct 10, 2024Modified: Oct 11, 2024

JSON object

Loading...
4.8
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Exploitability: 1.7 / Impact: 2.7
Source: psirt@adobe.com (Secondary)

Description

Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an admin attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.

Affected (116)

3 products
Commerce
Commerce B2b
Magento
Configuration A
116 vulnerable
Vulnerable SoftwareAffected Versions
Adobe
All versions
Version 2.3.7
Version 2.3.7 p1
Version 2.3.7 p2
Version 2.3.7 p3
Version 2.3.7 p4-ext1
Version 2.3.7 p4-ext2
Version 2.3.7 p4-ext3
Version 2.3.7 p4-ext4
Version 2.3.7 p4
Version 2.4.0
Version 2.4.0
Version 2.4.0 ext-1
Version 2.4.0 ext-2
Version 2.4.0 ext-3
Version 2.4.0 ext-4
Version 2.4.1
Version 2.4.1
Version 2.4.1 ext-1
Version 2.4.1 ext-2
Version 2.4.1 ext-3
Version 2.4.1 ext-4
Version 2.4.2
Version 2.4.2
Version 2.4.2 ext-1
Version 2.4.2 ext-2
Version 2.4.2 ext-3
Version 2.4.2 ext-4
Version 2.4.2 p1
Version 2.4.2 p2
Version 2.4.3
Version 2.4.3
Version 2.4.3 ext-1
Version 2.4.3 ext-2
Version 2.4.3 ext-3
Version 2.4.3 ext-4
Version 2.4.3 p1
Version 2.4.3 p2
Version 2.4.4
Version 2.4.4 p10
Version 2.4.4 p1
Version 2.4.4 p2
Version 2.4.4 p3
Version 2.4.4 p4
Version 2.4.4 p5
Version 2.4.4 p6
Version 2.4.4 p7
Version 2.4.4 p8
Version 2.4.4 p9
Version 2.4.5
Version 2.4.5 p1
Version 2.4.5 p2
Version 2.4.5 p3
Version 2.4.5 p4
Version 2.4.5 p5
Version 2.4.5 p6
Version 2.4.5 p7
Version 2.4.5 p8
Version 2.4.5 p9
Version 2.4.6
Version 2.4.6 p1
Version 2.4.6 p2
Version 2.4.6 p3
Version 2.4.6 p4
Version 2.4.6 p5
Version 2.4.6 p6
Version 2.4.6 p7
Version 2.4.7
Version 2.4.7 b1
Version 2.4.7 b2
Version 2.4.7 p1
Version 2.4.7 p2
Adobe
Version 1.3.3
Version 1.3.3 p10
Version 1.3.4
Version 1.3.4 p9
Version 1.3.5
Version 1.3.5 p7
Version 1.4.2
Version 1.4.2 p1
Version 1.4.2 p2
Adobe
All versions
Version 2.4.3
Version 2.4.4
Version 2.4.4 p10
Version 2.4.4 p1
Version 2.4.4 p2
Version 2.4.4 p3
Version 2.4.4 p4
Version 2.4.4 p5
Version 2.4.4 p6
Version 2.4.4 p7
Version 2.4.4 p8
Version 2.4.4 p9
Version 2.4.5
Version 2.4.5 p1
Version 2.4.5 p2
Version 2.4.5 p3
Version 2.4.5 p4
Version 2.4.5 p5
Version 2.4.5 p6
Version 2.4.5 p7
Version 2.4.5 p8
Version 2.4.5 p9
Version 2.4.6
Version 2.4.6 p1
Version 2.4.6 p2
Version 2.4.6 p3
Version 2.4.6 p4
Version 2.4.6 p5
Version 2.4.6 p6
Version 2.4.6 p7
Version 2.4.7
Version 2.4.7 b1
Version 2.4.7 p1
Version 2.4.7 p2

References (1)

Timeline

No history available yet.