CVE-2015-6497
Magento 1.9.2 File Inclusion
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
4Exploited in Wild
-Decision
Descriptions
The create function in app/code/core/Mage/Catalog/Model/Product/Api/V2.php in Magento Community Edition (CE) before 1.9.2.1 and Enterprise Edition (EE) before 1.14.2.1, when used with PHP before 5.4.24 or 5.5.8, allows remote authenticated users to execute arbitrary PHP code via the productData parameter to index.php/api/v2_soap.
La función create en el archivo app/code/core/Mage/Catalog/Model/Product/Api/V2.php en Magento Community Edition (CE) versiones anteriores a 1.9.2.1 y Enterprise Edition (EE) versiones anteriores a 1.14.2.1, cuando es usado con PHP versiones anteriores a 5.4.24 o 5.5.8, permite a usuarios autenticados remotos ejecutar código PHP arbitrario por medio del parámetro productData en index.php/api/v2_soap.
Magento versions 1.9.2 and below suffer from an autoloaded file inclusion vulnerability.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-08-17 CVE Reserved
- 2015-09-14 CVE Published
- 2023-10-02 EPSS Updated
- 2024-08-06 CVE Updated
- 2024-08-06 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-20: Improper Input Validation
CAPEC
References (5)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://magento.com/security/patches/supee-6482 | 2020-01-22 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Magento Search vendor "Magento" | Magento Search vendor "Magento" for product "Magento" | < 1.9.2.1 Search vendor "Magento" for product "Magento" and version " < 1.9.2.1" | community |
Affected
| in | Php Search vendor "Php" | Php Search vendor "Php" for product "Php" | < 5.4.24 Search vendor "Php" for product "Php" and version " < 5.4.24" | - |
Safe
|
Magento Search vendor "Magento" | Magento Search vendor "Magento" for product "Magento" | < 1.9.2.1 Search vendor "Magento" for product "Magento" and version " < 1.9.2.1" | community |
Affected
| in | Php Search vendor "Php" | Php Search vendor "Php" for product "Php" | >= 5.4.25 < 5.5.8 Search vendor "Php" for product "Php" and version " >= 5.4.25 < 5.5.8" | - |
Safe
|
Magento Search vendor "Magento" | Magento Search vendor "Magento" for product "Magento" | < 1.14.2.1 Search vendor "Magento" for product "Magento" and version " < 1.14.2.1" | enterprise |
Affected
| in | Php Search vendor "Php" | Php Search vendor "Php" for product "Php" | < 5.4.24 Search vendor "Php" for product "Php" and version " < 5.4.24" | - |
Safe
|
Magento Search vendor "Magento" | Magento Search vendor "Magento" for product "Magento" | < 1.14.2.1 Search vendor "Magento" for product "Magento" and version " < 1.14.2.1" | enterprise |
Affected
| in | Php Search vendor "Php" | Php Search vendor "Php" for product "Php" | >= 5.4.25 < 5.5.8 Search vendor "Php" for product "Php" and version " >= 5.4.25 < 5.5.8" | - |
Safe
|