Description
Magento versions 1.14.4.5 and earlier, and 1.9.4.5 and earlier have a stored cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.
Remediation
References
Related Vulnerabilities
Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2014-4613)
Oracle JRE CVE-2013-2422 Vulnerability (CVE-2013-2422)
XWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-35150)
Joomla Other Vulnerability (CVE-2007-0374)
Ruby Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-2065)