Magento XXE CVE-2024-34102

SdĂ­let
VloĆŸit
  • čas pƙidĂĄn 28. 08. 2024
  • đŸ”„Magento XXE CVE-2024-34102: A newly discovered vulnerability
    dubbed “CosmicSting” jeopardizes millions of online stores
    built on Adobe Commerce and Magento platforms.
    ⚠CosmicSting enables attackers to gain unauthorized access
    to sensitive files, including those containing passwords.
    When combined with a recent Linux bug (CVE-2024-2961),
    the vulnerability can be escalated to remote code execution.
    📣Dorks:
    Hunter: product.name="Adobe Magento"
    FOFA: app="Adobe-Magento"
    SHODAN: http.html:"magento-template"
    🔮POC: github.com/th3...
    ⚠Tool Made By: D. Sanjai Kumar & Gokul V
    #cybersecurity #cybersecurityawareness #security #informationsecurity #hacker #datasecurity #hacking #threat #infosecurity #technology #cloud #hacks #computerscience #informationtechnology #social #tech #hacked #android #bugbounty #OWASP #subdomain
    ncybersecurity.com
    +91-8016167754
    / nationalcybers1
    / national-cyber-securit...
    Services: info@ncybersecurity.com
    Training: root@ncybersecurity.com
    National Cyber Security Services

Komentáƙe • 1

  • @7i-
    @7i- Pƙed 2 měsĂ­ci +1

    Nice ❀