CVE-2016-4010
60Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 93%
from disclosure to weapon0 days
Published on NVDJan 23
1st PoCMay 18
metasploitMay 17
exploitation probability
93%top 1% of all CVEs
observed exploitation
nono source reports it
6 public exploit(s)
Magento CE and EE before 2.0.6 allows remote attackers to conduct PHP objection injection attacks and execute arbitrary PHP code via crafted serialized shopping cart data.
Affected products
n/a · n/apublic PoCs found — 6✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/39838githubgithub.com/brianwrf/Magento-CVE-2016-4010★ 6githubgithub.com/shadofren/CVE-2016-4010★ 2cve_referencepacketstormsecurity.com/files/137312/Magento-2.0.6-Unserialize-Remote-Code-Execution.htmlunverifiedcve_referencepacketstormsecurity.com/files/137121/Magento-Unauthenticated-Arbitrary-File-Write.htmlunverifiedcve_referencewww.exploit-db.com/exploits/39838/unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://netanelrub.in/2016/05/17/magento-unauthenticated-remote-code-execution/https://magento.com/security/patches/magento-206-security-updatehttps://packetstormsecurity.com/files/137121/Magento-Unauthenticated-Arbitrary-File-Write.htmlhttps://packetstormsecurity.com/files/137312/Magento-2.0.6-Unserialize-Remote-Code-Execution.htmlhttps://www.exploit-db.com/exploits/39838/