Skip to content

Known CVE

Magento Server Mass Importer - Cross-Site Scripting

Magento Server Mass Importer plugin contains multiple cross-site scripting vulnerabilities which allow remote attackers to inject arbitrary web script or HTML via the (1) profile parameter to web/magmi.php or (2) QUERY_STRING to web/magmi_import_run.php.

CVE-2015-2068

Medium2015CVSS 4.3CWE-79

cve2015 · plugin · edb · packetstorm · magento · magmi · xss · magmi_project

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website