CVE-2021-36036

Source
https://cve.org/CVERecord?id=CVE-2021-36036
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-36036.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2021-36036
Aliases
Published
2023-09-06T14:15:09.110Z
Modified
2026-07-08T05:57:11.727497625Z
Severity
  • 7.2 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

Magento versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper access control vulnerability within Magento's Media Gallery Upload workflow. By storing a specially crafted file in the website gallery, an authenticated attacker with administrative privilege can gain access to delete the .htaccess file. This could result in the attacker achieving remote code execution.

Database specific
{
    "unresolved_ranges": [
        {
            "vendor_product": "magento:magento",
            "source": "CPE_STRING",
            "extracted_events": [
                {
                    "introduced": "2.3.7-NA"
                },
                {
                    "last_affected": "2.3.7-NA"
                }
            ],
            "cpes": [
                "cpe:2.3:a:magento:magento:2.3.7:-:*:*:commerce:*:*:*"
            ]
        }
    ]
}
References

Affected packages

Git / github.com/magento/devdocs

Affected ranges

Type
GIT
Repo
https://github.com/magento/devdocs
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Introduced
Last affected
Database specific
Show details
{
    "source": [
        "CPE_RANGE",
        "CPE_STRING"
    ],
    "cpe": [
        "cpe:2.3:a:magento:magento:*:*:*:*:commerce:*:*:*",
        "cpe:2.3:a:magento:magento:*:*:*:*:open_source:*:*:*",
        "cpe:2.3:a:magento:magento:2.4.2:-:*:*:commerce:*:*:*",
        "cpe:2.3:a:magento:magento:2.4.2:-:*:*:open_source:*:*:*"
    ],
    "extracted_events": [
        {
            "introduced": "2.4.0"
        },
        {
            "fixed": "2.4.2"
        },
        {
            "introduced": "2.4.2-NA"
        },
        {
            "last_affected": "2.4.2-NA"
        }
    ]
}

Affected versions

1.*
1.x-eos
2.*
2.0.8
2.1.14
2.1.15
2.1.16
2.1.17
2.1.18
2.2.11
2.2.5
2.2.6
2.2.7
2.2.8
2.2.9
2.3.0
2.3.1
2.3.2
2.3.3-p1
2.3.4
2.3.5
2.3.6-p1
2.4.1-p1
2.4.2
2.4.2-NA

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-36036.json"

Git / github.com/magento/magento2

Affected ranges

Type
GIT
Repo
https://github.com/magento/magento2
Events
Database specific
Show details
{
    "source": [
        "CPE_RANGE",
        "CPE_STRING"
    ],
    "cpe": [
        "cpe:2.3:a:magento:magento:*:*:*:*:commerce:*:*:*",
        "cpe:2.3:a:magento:magento:*:*:*:*:open_source:*:*:*",
        "cpe:2.3:a:magento:magento:2.3.7:-:*:*:commerce:*:*:*",
        "cpe:2.3:a:magento:magento:2.3.7:-:*:*:open_source:*:*:*",
        "cpe:2.3:a:magento:magento:2.4.2:-:*:*:commerce:*:*:*",
        "cpe:2.3:a:magento:magento:2.4.2:-:*:*:open_source:*:*:*",
        "cpe:2.3:a:magento:magento:2.4.2:p1:*:*:commerce:*:*:*",
        "cpe:2.3:a:magento:magento:2.4.2:p1:*:*:open_source:*:*:*"
    ],
    "extracted_events": [
        {
            "introduced": "0"
        },
        {
            "fixed": "2.3.7"
        },
        {
            "introduced": "2.4.0"
        },
        {
            "fixed": "2.4.2"
        },
        {
            "introduced": "2.3.7-NA"
        },
        {
            "last_affected": "2.3.7-NA"
        },
        {
            "introduced": "2.4.2-NA"
        },
        {
            "last_affected": "2.4.2-NA"
        },
        {
            "introduced": "2.4.2-p1"
        },
        {
            "last_affected": "2.4.2-p1"
        }
    ]
}

Affected versions

0.*
0.1.0-alpha100
0.1.0-alpha101
0.1.0-alpha102
0.1.0-alpha103
0.1.0-alpha104
0.1.0-alpha105
0.1.0-alpha106
0.1.0-alpha107
0.1.0-alpha108
0.1.0-alpha89
0.1.0-alpha90
0.1.0-alpha91
0.1.0-alpha92
0.1.0-alpha93
0.1.0-alpha94
0.1.0-alpha95
0.1.0-alpha96
0.1.0-alpha97
0.1.0-alpha98
0.1.0-alpha99
0.42.0-beta1
0.42.0-beta3
0.74.0-beta1
2.*
2.0.0
2.0.0-rc
2.1.0
2.1.0-rc1
2.1.0-rc2
2.1.0-rc3
2.2.0-RC1.1
2.2.0-RC1.2
2.2.0-RC1.3
2.3.7-NA
2.4.2-NA
2.4.2-p1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-36036.json"