{"id":7562,"date":"2015-04-23T04:48:45","date_gmt":"2015-04-23T09:48:45","guid":{"rendered":"https:\/\/www.urbecom.com\/blog\/?p=7562"},"modified":"2016-10-27T03:24:58","modified_gmt":"2016-10-27T08:24:58","slug":"se-descubre-una-vulnerabilidad-en-magento","status":"publish","type":"post","link":"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/","title":{"rendered":"Se descubre una vulnerabilidad en Magento"},"content":{"rendered":"<p style=\"text-align: left;\">Magento, la conocida plataforma de <a href=\"https:\/\/www.urbecom.com\/blog\/como-dirigir-un-negocio-de-ecommerce-con-exito\/\">comercio electr\u00f3nico<\/a> propiedad de eBay desde el a\u00f1o 2011 que se usa por innumerables tiendas online en todo el mundo,\u00a0 presenta una <strong>grave vulnerabilidad<\/strong> que podr\u00eda provocar que <strong>los atacantes\u00a0 obtuviesen el control de las tienda<\/strong>s y de sus bases de datos completas; todo un peligro para <a href=\"https:\/\/www.urbecom.com\">hacer p\u00e1gina web<\/a>.<\/p>\n<p style=\"text-align: left;\"><strong>El fallo,<\/strong> que afectar\u00eda a alrededor de 200.000 sites por todo el mundo, ha sido desvelado por el Grupo de Investigaci\u00f3n de Vulnerabilidades y Malware de Check Point\u00a0Software Technologies Ltd., una reputada empresa proveedora mundial especializada en temas de <a href=\"https:\/\/www.urbecom.com\/es\/seguridad-tienda-online\">seguridad<\/a>.<\/p>\n<p style=\"text-align: left;\">Esta vulnerabilidad <strong>supone una amenaza significativa<\/strong> no solamente para una tienda, sino tambi\u00e9n para todas las marcas minoristas que usan hoy en d\u00eda \u00a0la plataforma Magento para sus negocios y tiendas online, lo cual significa\u00a0 alrededor de un 30% del mercado del comercio electr\u00f3nico en el mundo. Adem\u00e1s, hay que recordar que en los \u00faltimos a\u00f1os los sitios de comercio electr\u00f3nico se han erigido en un objetivo para los <a href=\"http:\/\/ecommaster.es\/blog-ecommerce\/i\/7054\/84\/tips-de-seguridad-para-tu-comercio-electronico\">cibercriminales<\/a> toda vez que son sabedores que son una aut\u00e9ntica mina de oro para obtener todo tipo de informaci\u00f3n sobre \u00a0las tarjetas de cr\u00e9dito.<\/p>\n<p style=\"text-align: left;\"><strong>El fallo, una vulnerabilidad de ejecuci\u00f3n remota de c\u00f3digo,<\/strong> posibilita a un atacante acabar con todos los mecanismos de seguridad y obtener el absoluto control de la tienda y su completa \u00a0base de datos.<\/p>\n<p style=\"text-align: left;\">Magento Community Edition permite hacer una pagina web de venta electr\u00f3nica modificando\u00a0 el c\u00f3digo y sumando varias caracter\u00edsticas y funcionalidades al instalar extensiones del marketplace Magento Connect.<\/p>\n<p style=\"text-align: left;\">Check Point \u00a0<strong>ha divulgado estas vulnerabilidades de manera privada<\/strong>, junto con una completa\u00a0 lista de recomendaciones con el fin de corregirlas dirigida a la compa\u00f1\u00eda eBay antes de su anuncio p\u00fablico. Un parche para acabar con \u00a0las mismas ya fue lanzado el pasado 9 de febrero de 2015.<\/p>\n<p style=\"text-align: left;\">Por lo tanto, <strong>si se posee un negocio on line que usa \u00a0Magento, se debe parchear de manera inmediata<\/strong>. De no poder actualizar por cualquier motivo, se recomienda se coloque el sitio web \u00a0detr\u00e1s de WAF (Firewall de aplicaciones web) o IPS. Otra soluci\u00f3n es utilizar la opci\u00f3n de <a href=\"https:\/\/www.urbecom.com\/es\/registro-nueva-tienda\">crear tiendas online<\/a> de <strong>Urbecom, segura, econ\u00f3mica y fiable.<\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Magento, la conocida plataforma de comercio electr\u00f3nico propiedad de eBay desde el a\u00f1o 2011 que se usa por innumerables tiendas online en todo el mundo,\u00a0 presenta una grave vulnerabilidad que podr\u00eda provocar que los atacantes\u00a0 obtuviesen el control de las tiendas y de sus bases de datos completas; todo un peligro para hacer p\u00e1gina web. [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":7565,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[17,12],"tags":[1113,1047,1114,1112],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v18.9 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Se descubre una vulnerabilidad en Magento - Blog de comercio electr\u00f3nico, Ecommerce y Marketing Online | urbeCOM<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/\" \/>\n<meta property=\"og:locale\" content=\"es_ES\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Se descubre una vulnerabilidad en Magento - Blog de comercio electr\u00f3nico, Ecommerce y Marketing Online | urbeCOM\" \/>\n<meta property=\"og:description\" content=\"Magento, la conocida plataforma de comercio electr\u00f3nico propiedad de eBay desde el a\u00f1o 2011 que se usa por innumerables tiendas online en todo el mundo,\u00a0 presenta una grave vulnerabilidad que podr\u00eda provocar que los atacantes\u00a0 obtuviesen el control de las tiendas y de sus bases de datos completas; todo un peligro para hacer p\u00e1gina web. [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/\" \/>\n<meta property=\"og:site_name\" content=\"Blog de comercio electr\u00f3nico, Ecommerce y Marketing Online | urbeCOM\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/urbecom\" \/>\n<meta property=\"article:published_time\" content=\"2015-04-23T09:48:45+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2016-10-27T08:24:58+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.urbecom.com\/blog\/wp-content\/uploads\/2015\/04\/23-04-2015.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"800\" \/>\n\t<meta property=\"og:image:height\" content=\"300\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@urbecom\" \/>\n<meta name=\"twitter:site\" content=\"@urbecom\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"urbeCOM Ecomercio\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.urbecom.com\/blog\/#organization\",\"name\":\"UrbeCOM Ecomercio S.L.\",\"url\":\"https:\/\/www.urbecom.com\/blog\/\",\"sameAs\":[\"https:\/\/es.pinterest.com\/Urbecom\/\",\"https:\/\/www.youtube.com\/user\/urbecom\",\"https:\/\/www.facebook.com\/urbecom\",\"https:\/\/twitter.com\/urbecom\"],\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\/\/www.urbecom.com\/blog\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.urbecom.com\/blog\/wp-content\/uploads\/2019\/05\/Imagotipo800.png\",\"contentUrl\":\"https:\/\/www.urbecom.com\/blog\/wp-content\/uploads\/2019\/05\/Imagotipo800.png\",\"width\":800,\"height\":800,\"caption\":\"UrbeCOM Ecomercio S.L.\"},\"image\":{\"@id\":\"https:\/\/www.urbecom.com\/blog\/#\/schema\/logo\/image\/\"}},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.urbecom.com\/blog\/#website\",\"url\":\"https:\/\/www.urbecom.com\/blog\/\",\"name\":\"Blog de comercio electr\u00f3nico, Ecommerce y Marketing Online | urbeCOM\",\"description\":\"Blog de urbeCOM donde encontrar\u00e1s informaci\u00f3n sobre el comercio electr\u00f3nico, c\u00f3mo crear una tienda online, c\u00f3mo vender en Internet y en Redes Sociales, Marketing online, etc.\",\"publisher\":{\"@id\":\"https:\/\/www.urbecom.com\/blog\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.urbecom.com\/blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"es\"},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#primaryimage\",\"url\":\"https:\/\/www.urbecom.com\/blog\/wp-content\/uploads\/2015\/04\/23-04-2015.jpg\",\"contentUrl\":\"https:\/\/www.urbecom.com\/blog\/wp-content\/uploads\/2015\/04\/23-04-2015.jpg\",\"width\":800,\"height\":300,\"caption\":\"se-descubre-una-vulnerabilidad-en-magento\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#webpage\",\"url\":\"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/\",\"name\":\"Se descubre una vulnerabilidad en Magento - Blog de comercio electr\u00f3nico, Ecommerce y Marketing Online | urbeCOM\",\"isPartOf\":{\"@id\":\"https:\/\/www.urbecom.com\/blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#primaryimage\"},\"datePublished\":\"2015-04-23T09:48:45+00:00\",\"dateModified\":\"2016-10-27T08:24:58+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Portada\",\"item\":\"https:\/\/www.urbecom.com\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Se descubre una vulnerabilidad en Magento\"}]},{\"@type\":\"Article\",\"@id\":\"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#webpage\"},\"author\":{\"@id\":\"https:\/\/www.urbecom.com\/blog\/#\/schema\/person\/f8b565551357d8913520396dd1e717de\"},\"headline\":\"Se descubre una vulnerabilidad en Magento\",\"datePublished\":\"2015-04-23T09:48:45+00:00\",\"dateModified\":\"2016-10-27T08:24:58+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#webpage\"},\"wordCount\":383,\"commentCount\":1,\"publisher\":{\"@id\":\"https:\/\/www.urbecom.com\/blog\/#organization\"},\"image\":{\"@id\":\"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.urbecom.com\/blog\/wp-content\/uploads\/2015\/04\/23-04-2015.jpg\",\"keywords\":[\"fallo en tiendas online eBay\",\"seguridad ecommerce\",\"tienda online fiable\",\"vulnerabilidad en magento\"],\"articleSection\":[\"Comercio Electr\u00f3nico\",\"noticias\"],\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#respond\"]}]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.urbecom.com\/blog\/#\/schema\/person\/f8b565551357d8913520396dd1e717de\",\"name\":\"urbeCOM Ecomercio\",\"sameAs\":[\"https:\/\/plus.google.com\/+Urbecomsl\/posts\"],\"url\":\"https:\/\/www.urbecom.com\/blog\/author\/admin\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Se descubre una vulnerabilidad en Magento - Blog de comercio electr\u00f3nico, Ecommerce y Marketing Online | urbeCOM","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/","og_locale":"es_ES","og_type":"article","og_title":"Se descubre una vulnerabilidad en Magento - Blog de comercio electr\u00f3nico, Ecommerce y Marketing Online | urbeCOM","og_description":"Magento, la conocida plataforma de comercio electr\u00f3nico propiedad de eBay desde el a\u00f1o 2011 que se usa por innumerables tiendas online en todo el mundo,\u00a0 presenta una grave vulnerabilidad que podr\u00eda provocar que los atacantes\u00a0 obtuviesen el control de las tiendas y de sus bases de datos completas; todo un peligro para hacer p\u00e1gina web. [&hellip;]","og_url":"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/","og_site_name":"Blog de comercio electr\u00f3nico, Ecommerce y Marketing Online | urbeCOM","article_publisher":"https:\/\/www.facebook.com\/urbecom","article_published_time":"2015-04-23T09:48:45+00:00","article_modified_time":"2016-10-27T08:24:58+00:00","og_image":[{"width":800,"height":300,"url":"https:\/\/www.urbecom.com\/blog\/wp-content\/uploads\/2015\/04\/23-04-2015.jpg","type":"image\/jpeg"}],"twitter_card":"summary_large_image","twitter_creator":"@urbecom","twitter_site":"@urbecom","twitter_misc":{"Escrito por":"urbeCOM Ecomercio","Tiempo de lectura":"2 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Organization","@id":"https:\/\/www.urbecom.com\/blog\/#organization","name":"UrbeCOM Ecomercio S.L.","url":"https:\/\/www.urbecom.com\/blog\/","sameAs":["https:\/\/es.pinterest.com\/Urbecom\/","https:\/\/www.youtube.com\/user\/urbecom","https:\/\/www.facebook.com\/urbecom","https:\/\/twitter.com\/urbecom"],"logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/www.urbecom.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.urbecom.com\/blog\/wp-content\/uploads\/2019\/05\/Imagotipo800.png","contentUrl":"https:\/\/www.urbecom.com\/blog\/wp-content\/uploads\/2019\/05\/Imagotipo800.png","width":800,"height":800,"caption":"UrbeCOM Ecomercio S.L."},"image":{"@id":"https:\/\/www.urbecom.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"WebSite","@id":"https:\/\/www.urbecom.com\/blog\/#website","url":"https:\/\/www.urbecom.com\/blog\/","name":"Blog de comercio electr\u00f3nico, Ecommerce y Marketing Online | urbeCOM","description":"Blog de urbeCOM donde encontrar\u00e1s informaci\u00f3n sobre el comercio electr\u00f3nico, c\u00f3mo crear una tienda online, c\u00f3mo vender en Internet y en Redes Sociales, Marketing online, etc.","publisher":{"@id":"https:\/\/www.urbecom.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.urbecom.com\/blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"es"},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#primaryimage","url":"https:\/\/www.urbecom.com\/blog\/wp-content\/uploads\/2015\/04\/23-04-2015.jpg","contentUrl":"https:\/\/www.urbecom.com\/blog\/wp-content\/uploads\/2015\/04\/23-04-2015.jpg","width":800,"height":300,"caption":"se-descubre-una-vulnerabilidad-en-magento"},{"@type":"WebPage","@id":"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#webpage","url":"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/","name":"Se descubre una vulnerabilidad en Magento - Blog de comercio electr\u00f3nico, Ecommerce y Marketing Online | urbeCOM","isPartOf":{"@id":"https:\/\/www.urbecom.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#primaryimage"},"datePublished":"2015-04-23T09:48:45+00:00","dateModified":"2016-10-27T08:24:58+00:00","breadcrumb":{"@id":"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Portada","item":"https:\/\/www.urbecom.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Se descubre una vulnerabilidad en Magento"}]},{"@type":"Article","@id":"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#article","isPartOf":{"@id":"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#webpage"},"author":{"@id":"https:\/\/www.urbecom.com\/blog\/#\/schema\/person\/f8b565551357d8913520396dd1e717de"},"headline":"Se descubre una vulnerabilidad en Magento","datePublished":"2015-04-23T09:48:45+00:00","dateModified":"2016-10-27T08:24:58+00:00","mainEntityOfPage":{"@id":"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#webpage"},"wordCount":383,"commentCount":1,"publisher":{"@id":"https:\/\/www.urbecom.com\/blog\/#organization"},"image":{"@id":"https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#primaryimage"},"thumbnailUrl":"https:\/\/www.urbecom.com\/blog\/wp-content\/uploads\/2015\/04\/23-04-2015.jpg","keywords":["fallo en tiendas online eBay","seguridad ecommerce","tienda online fiable","vulnerabilidad en magento"],"articleSection":["Comercio Electr\u00f3nico","noticias"],"inLanguage":"es","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.urbecom.com\/blog\/se-descubre-una-vulnerabilidad-en-magento\/#respond"]}]},{"@type":"Person","@id":"https:\/\/www.urbecom.com\/blog\/#\/schema\/person\/f8b565551357d8913520396dd1e717de","name":"urbeCOM Ecomercio","sameAs":["https:\/\/plus.google.com\/+Urbecomsl\/posts"],"url":"https:\/\/www.urbecom.com\/blog\/author\/admin\/"}]}},"_links":{"self":[{"href":"https:\/\/www.urbecom.com\/blog\/wp-json\/wp\/v2\/posts\/7562"}],"collection":[{"href":"https:\/\/www.urbecom.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.urbecom.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.urbecom.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.urbecom.com\/blog\/wp-json\/wp\/v2\/comments?post=7562"}],"version-history":[{"count":5,"href":"https:\/\/www.urbecom.com\/blog\/wp-json\/wp\/v2\/posts\/7562\/revisions"}],"predecessor-version":[{"id":8272,"href":"https:\/\/www.urbecom.com\/blog\/wp-json\/wp\/v2\/posts\/7562\/revisions\/8272"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.urbecom.com\/blog\/wp-json\/wp\/v2\/media\/7565"}],"wp:attachment":[{"href":"https:\/\/www.urbecom.com\/blog\/wp-json\/wp\/v2\/media?parent=7562"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.urbecom.com\/blog\/wp-json\/wp\/v2\/categories?post=7562"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.urbecom.com\/blog\/wp-json\/wp\/v2\/tags?post=7562"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}