Adobe Commerce
cpe:2.3:a:adobe:commerce:*:*:*:*:*:*:*
- <= 2.4.7-p3
- <= 2.4.6-p8
- <= 2.4.5-p10
- <= 2.4.4-p11
- <= 2.4.8-beta1
An incorrect authorization vulnerability has been identified in Adobe Commerce versions 2.4.7-p3, 2.4.6-p8, 2.4.5-p10, 2.4.4-p11, and 2.4.8-beta1 and earlier. This vulnerability could allow a low-privileged attacker to bypass security features and view or modify certain information, without requiring user interaction.
Exploitation of this vulnerability could lead to unauthorized access to information or the ability to make unauthorized modifications.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.