#VU30930 Arbitrary file upload in Magento Open Source - CVE-2019-7930

 

#VU30930 Arbitrary file upload in Magento Open Source - CVE-2019-7930

Published: August 3, 2019 / Updated: July 17, 2020


Vulnerability identifier: #VU30930
Vulnerability risk: Medium
CVSSv4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Green
CVE-ID: CVE-2019-7930
CWE-ID: CWE-434
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vulnerable software:
Magento Open Source
Software vendor:
Adobe

Description

The vulnerability allows a remote privileged user to execute arbitrary code.

A file upload restriction bypass exists in Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. An authenticated user with administrator privileges to the import feature can make modifications to a configuration file, resulting in potentially unauthorized removal of file upload restrictions. This can result in arbitrary code execution when a malicious file is then uploaded and executed on the system.


Remediation

Install update from vendor's website.

External links