Magento Commerce Insecure Direct Object Reference Vulnerability Could Lead To Sensitive Information Disclosure
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 5.3epss 4.0%
exploitation probability
4.0%top 11% of all CVEs
observed exploitation
nono source reports it
In short
Magento's checkout module allows attackers to access other customers' sensitive information by manipulating order references. This happens because the system doesn't properly verify who should see which data.
Technical detail
Unauthenticated or authenticated attackers can exploit IDOR in the checkout module by directly referencing object identifiers (order IDs, customer data) without proper authorization checks. Exploitation requires knowledge of valid object identifiers and results in unauthorized access to sensitive checkout-related information including customer details and order data.
Summary generated and translated by AI from the official description.
Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) are vulnerable to an insecure direct object vulnerability (IDOR) in the checkout module. Successful exploitation could lead to sensitive information disclosure.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Affected products
Adobe · Magento Commerce