Security Advisory

CVE-2020-5776

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-09-01 20:34:52
Last updated 2024-08-04 08:39:25
Assigner tenable
State PUBLISHED

Description

Currently, all versions of MAGMI are vulnerable to CSRF due to the lack of CSRF tokens. RCE (via phpcli command) is possible in the event that a CSRF is leveraged against an existing admin session for MAGMI.