🔙 목록으로 돌아가기

CVE-2020-5777: Magento Mass Importer <0.7.24 - Remote Auth Bypass

TitleMagento Mass Importer <0.7.24 - Remote Auth Bypass
Authordwisiswant0
SeverityCritical
ImpactAn attacker can bypass authentication and gain unauthorized access to the Magento Mass Importer plugin.
RemediationUpgrade to version 0.7.24 or later to fix the authentication bypass vulnerability.
CVSS Score9.8
EPSS Score0.91472
CVE IDCVE-2020-5777
CWE IDCWE-287
Shodan Queryhttp.component:"Magento"http.component:"magento"
Tags cve cve2020 plugin tenable magmi magento auth bypass magmi_project vuln

🔍 Vulnerability Description

Magento Mass Importer (aka MAGMI) versions prior to 0.7.24 are vulnerable to a remote authentication bypass due to allowing default credentials in the event there is a database connection failure.

🌐 HTTP Request

GET /index.php/catalogsearch/advanced/result/?name=e HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Firefox/125.0
Connection: close
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2020/CVE-2020-5777.yaml

🦈 Packet Capture: ⬇️ Download cve-2020-5777.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A