First published: Tue Jun 25 2019(Updated: )
Adobe Campaign Classic version 18.10.5-8984 and earlier versions have a Command injection vulnerability. Successful exploitation could lead to Arbitrary Code Execution in the context of the current user.
Credit: psirt@adobe.com
Affected Software | Affected Version | How to fix |
---|---|---|
composer/magento/product-community-edition | >=2.1<2.1.18>=2.2<2.2.9>=2.3<2.3.2 | |
Adobe Campaign | <=18.10.5.8984 | |
Linux Linux kernel | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-7850.
The title of the vulnerability is PRODSECBUG-2116: Stored cross-site scripting in the catalog events feature.
The affected software is Adobe Campaign Classic version 18.10.5-8984 and earlier versions.
The severity of CVE-2019-7850 is critical with a severity value of 9.8.
To fix CVE-2019-7850, you should patch your software to the latest version provided by the vendor.