Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2020-5777EPSS 23%
MAGMI versions prior to 0.7.24 are vulnerable to a remote authentication bypass due to allowing default credentials in the event there is a database …
Magmi
0.7.24+
HIGH 8.8
CVE-2020-5776EPSS 15%
Currently, all versions of MAGMI are vulnerable to CSRF due to the lack of CSRF tokens. RCE (via phpcli command) is possible in the event that a CSRF…
Magmi
Mitigation only
MEDIUM 6.1
CVE-2017-7391EPSS 8%
A Cross-Site Scripting (XSS) was discovered in 'Magmi 0.7.22'. The vulnerability exists due to insufficient filtration of user-supplied data (prefix)…
Magmi
Patch available
MEDIUM 5.0
CVE-2015-2067EPSS 39%
Directory traversal vulnerability in web/ajax_pluginconf.php in the MAGMI (aka Magento Mass Importer) plugin for Magento Server allows remote attacke…
Magmi
No fix yet
HIGH 9.0
CVE-2014-8770EPSS 7%
Unrestricted file upload vulnerability in magmi/web/magmi.php in the MAGMI (aka Magento Mass Importer) plugin 0.7.17a and earlier for Magento Communi…
Magmi
after 0.7.17a