Magento Improper Control of Generation of Code (Code Injection) Vulnerability - CVE-2020-9664 - Vulnerability Database

Magento Improper Control of Generation of Code (Code Injection) Vulnerability - CVE-2020-9664

Critical
Reference: CVE-2020-9664
Title: Magento Improper Control of Generation of Code (Code Injection) Vulnerability
Overview:

Magento versions 1.14.4.5 and earlier and 1.9.4.5 and earlier have a php object injection vulnerability. Successful exploitation could lead to arbitrary code execution.