CVE-2022-35698

Adobe Commerce versions 2.4.4-p1 (and earlier) and 2.4.5 (and earlier) are affected by a Stored Cross-site Scripting vulnerability. Exploitation of this issue does not require user interaction and could result in a post-authentication arbitrary code execution.
References
Configurations

Configuration 1

cpe:2.3:a:adobe:commerce:2.4.4:-:*:*:*:*:*:*
cpe:2.3:a:adobe:magento_open_source:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:magento_open_source:2.4.5:-:*:*:*:*:*:*
cpe:2.3:a:adobe:magento_open_source:2.4.4:p1:*:*:*:*:*:*
cpe:2.3:a:adobe:magento_open_source:2.4.4:-:*:*:*:*:*:*
cpe:2.3:a:adobe:commerce:2.4.5:-:*:*:*:*:*:*
cpe:2.3:a:adobe:commerce:2.4.4:p1:*:*:*:*:*:*
cpe:2.3:a:adobe:commerce:*:*:*:*:*:*:*:*

Information

Published : 2022-10-14 08:15

Updated : 2022-10-19 06:21


NVD link : CVE-2022-35698

Mitre link : CVE-2022-35698

Products Affected
No products.
CWE