← back
CVE-2020-5776observed exploitation

CVE-2020-5776

45Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actepss 15%
from disclosure to weapon
Published on NVDSep 1
VulnCheck+273d
exploitation probability
15%top 4% of all CVEs
observed exploitation
yesVulnCheck
Currently, all versions of MAGMI are vulnerable to CSRF due to the lack of CSRF tokens. RCE (via phpcli command) is possible in the event that a CSRF is leveraged against an existing admin session for MAGMI.
Affected products
n/a · MAGMI