Hackers Exploiting Magento to Execute Remote Code and Gain Complete Account Access

A critical unrestricted file upload vulnerability, dubbed “PolyShell,” is actively being exploited in Magento and Adobe Commerce stores. Discovered by the Sansec Forensics Team, this flaw allows unauthenticated attackers to execute remote code (RCE) and completely take over accounts. With no official patch available for production environments, hackers have been conducting mass automated attacks against […]

The post Hackers Exploiting Magento to Execute Remote Code and Gain Complete Account Access appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: