CVE-2020-5776
EUVD-2021-105001.09.2020, 21:15
Currently, all versions of MAGMI are vulnerable to CSRF due to the lack of CSRF tokens. RCE (via phpcli command) is possible in the event that a CSRF is leveraged against an existing admin session for MAGMI.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| magmi_project | magmi | * |
𝑥
= Vulnerable software versions
Common Weakness Enumeration