CVE-2024-20716
Force high-usage of resources by generating unlimited coupons: Adobe Commerce
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could lead to an application denial-of-service. A high-privileged attacker could leverage this vulnerability to exhaust system resources, causing the application to slow down or crash. Exploitation of this issue does not require user interaction.
Las versiones 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 y anteriores de Adobe Commerce se ven afectadas por una vulnerabilidad de consumo incontrolado de recursos que podría provocar una denegación de servicio de la aplicación. Un atacante con muchos privilegios podría aprovechar esta vulnerabilidad para agotar los recursos del sistema, provocando que la aplicación se ralentice o falle. La explotación de este problema no requiere la interacción del usuario.
CVSS Scores
SSVC
- Decision:Track
Timeline
- 2023-12-04 CVE Reserved
- 2024-02-15 CVE Published
- 2024-03-18 EPSS Updated
- 2024-08-01 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-400: Uncontrolled Resource Consumption
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://helpx.adobe.com/security/products/magento/apsb24-03.html | 2024-02-16 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.4 Search vendor "Adobe" for product "Commerce" and version "2.4.4" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.4 Search vendor "Adobe" for product "Commerce" and version "2.4.4" | p1 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.4 Search vendor "Adobe" for product "Commerce" and version "2.4.4" | p2 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.4 Search vendor "Adobe" for product "Commerce" and version "2.4.4" | p3 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.4 Search vendor "Adobe" for product "Commerce" and version "2.4.4" | p4 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.4 Search vendor "Adobe" for product "Commerce" and version "2.4.4" | p5 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.4 Search vendor "Adobe" for product "Commerce" and version "2.4.4" | p6 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.5 Search vendor "Adobe" for product "Commerce" and version "2.4.5" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.5 Search vendor "Adobe" for product "Commerce" and version "2.4.5" | p1 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.5 Search vendor "Adobe" for product "Commerce" and version "2.4.5" | p2 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.5 Search vendor "Adobe" for product "Commerce" and version "2.4.5" | p3 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.5 Search vendor "Adobe" for product "Commerce" and version "2.4.5" | p4 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.5 Search vendor "Adobe" for product "Commerce" and version "2.4.5" | p5 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.6 Search vendor "Adobe" for product "Commerce" and version "2.4.6" | - |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.6 Search vendor "Adobe" for product "Commerce" and version "2.4.6" | p1 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.6 Search vendor "Adobe" for product "Commerce" and version "2.4.6" | p2 |
Affected
| ||||||
Adobe Search vendor "Adobe" | Commerce Search vendor "Adobe" for product "Commerce" | 2.4.6 Search vendor "Adobe" for product "Commerce" and version "2.4.6" | p3 |
Affected
|