Skip to content

Known CVE

Magento Server MAGMI - Directory Traversal

Magento Server MAGMI (aka Magento Mass Importer) contains a directory traversal vulnerability in web/ajax_pluginconf.php. that allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.

CVE-2015-2067

Medium2015CVSS 5CWE-22

cve2015 · plugin · edb · packetstorm · lfi · magento · magmi · magmi_project

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website