Executive brief
Magento arbitrary PHP code execution via the productData parameter
Affected products
- Packagist magento/core
Junglewise Threat Intelligence
CVE-2015-6497 · Severity: low · CVSS 3.1 · Published 2022-05-24
Technologies: magento/core (Packagist). Vendors: Packagist.
Magento arbitrary PHP code execution via the productData parameter