Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-5777 PoC — MAGMI 插件授权问题漏洞

Source
Associated Vulnerability
Title:MAGMI 插件授权问题漏洞 (CVE-2020-5777)
Description:Adobe MAGMI是美国奥多比(Adobe)公司的轻量级 UI 组件。 MAGMI 存在授权问题漏洞,该漏洞源于数据库连接失败时允许使用默认凭据。攻击者可以触发此连接失败从而绕过身份验证的身份验证。
Description
Magento Mass Importer (aka MAGMI) versions prior to 0.7.24 are vulnerable to a remote authentication bypass due to allowing default credentials in the event there is a database connection failure.
File Snapshot

id: CVE-2020-5777 info: name: Magento Mass Importer <0.7.24 - Remote Auth Bypass author: dwisi ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.