Lucene search

K
osvGoogleOSV:GHSA-C252-XC8V-MQMM
HistoryMay 13, 2022 - 1:25 a.m.

MAGMI plugin for Magento Server Directory Traversal

2022-05-1301:25:27
Google
osv.dev
7
magmi
plugin
directory traversal
magento server

EPSS

0.007

Percentile

80.5%

Directory traversal vulnerability in web/ajax_pluginconf.php in the MAGMI (aka Magento Mass Importer) plugin for Magento Server allows remote attackers to read arbitrary files via a … (dot dot) in the file parameter.

EPSS

0.007

Percentile

80.5%