PT-2014-8725 · Magmi · Magmi Plugin

Parvinder Bhasin

+1

·

Published

2014-11-13

·

Updated

2022-05-14

·

CVE-2014-8770

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions MAGMI plugin versions 0.7.17a and earlier
Description The issue allows remote authenticated users to execute arbitrary code by uploading a ZIP file that contains a PHP file, then accessing the PHP file via a direct request to it in magmi/plugins/. This is due to an unrestricted file upload vulnerability in magmi/web/magmi.php.
Recommendations For MAGMI plugin versions 0.7.17a and earlier, consider disabling the magmi/web/magmi.php file until a patch is available to prevent remote authenticated users from uploading malicious files. Restrict access to the magmi/plugins/ directory to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-8770
GHSA-X3GH-95P8-43QV

Affected Products

Magmi Plugin