Magento PolyShell Flaw Enables Unauthenticated Uploads, RCE and Account Takeover
ID: 0f0f54e1-6836-5d5d-a4de-2c58fa45b89c
STIX ID: report--0f0f54e1-6836-5d5d-a4de-2c58fa45b89c
Feed Name: The Hacker News
Sansec disclosed a critical unrestricted file-upload vulnerability in Magento's REST API dubbed "PolyShell," where attackers can upload base64-encoded files (disguised as images) into product custom options allowing arbitrary executable uploads that may lead to remote code execution or account takeover; Adobe patched the pre-release 2.4.9 branch but many production stores remain exposed, and Netcraft reported a large-scale Magento defacement campaign impacting roughly 15,000 hostnames that could be related.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
