Description
Adobe Commerce versions 2.4.3-p1 (and earlier) and 2.3.7-p2 (and earlier) are affected by an improper input validation vulnerability during the checkout process. Exploitation of this issue does not require user interaction and could result in arbitrary code execution.
Remediation
References
Related Vulnerabilities
Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-2687)
Sqlite Improper Input Validation Vulnerability (CVE-2017-13685)
WordPress Plugin Gigya-Social Infrastructure Unspecified Vulnerability (3.0.4)
WordPress Plugin Contact Form 7 Database Addon-CFDB7 Unspecified Vulnerability (1.2.5.7)
WordPress Plugin Participants Database Cross-Site Scripting (1.7.5.9)