A newly published exploit for a Magento vulnerability that can be used with no authentication required puts hundreds of thousands of e-commerce sites at risk (Dan Goodin/Ars Technica)

Dan Goodin / Ars Technica:
A newly published exploit for a Magento vulnerability that can be used with no authentication required puts hundreds of thousands of e-commerce sites at risk  —  Magento admins: beware of SQL flaw that requires no authentication.  —  Attack code was published on Friday that exploits …



from Techmeme https://ift.tt/2TIjM2L

Comments

Popular posts from this blog

Microsoft says it has no plans to add more backward compatible titles for Xbox One, but says Project Scarlett will run games from all four Xbox generations (Tom Warren/The Verge)

Internal docs: Facebook employees created a test account in 2019 and within days, it was recommended extreme and conspiratorial content, including QAnon Groups (Brandy Zadrozny/NBC News)

Facebook teases Project Cambria, a high-end mixed reality headset coming next year with cameras that allow high-resolution passthrough (Adi Robertson/The Verge)