#VU22753 Input validation error in Adobe Commerce (formerly Magento Commerce) - CVE-2019-8107
Published: November 13, 2019
Adobe Commerce (formerly Magento Commerce)
Adobe
Description
The vulnerability allows a remote attacker to perform an arbitrary file deletion on the target system.
The vulnerability exists due to insufficient validation of user-supplied input. A remote authenticated attacker with export data transfer privileges can send a specially crafted request and perform an arbitrary file deletion.