SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Magento CE Shopping Cart Data Remote Code Execution 1

Category: WEB-ATTACKS      

Magento CE and EE before 2.0.6 allows remote attackers to conduct PHP objection injection attacks and execute arbitrary PHP code via crafted serialized shopping cart data.

References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4010


Relevant Information