CVE-2024-25413 Information
Feb 17, 2024
cve
Description
A XSLT Server Side injection vulnerability in the Import Jobs function of FireBear Improved Import And Export v3.8.6 allows attackers to execute arbitrary commands via a crafted XSLT file.
Reference
https://github.com/capture0x/Magento-ver.-2.4.6 https://packetstormsecurity.com/files/175801/FireBear-Improved-Import-And-Export-3.8.6-XSLT-Server-Side-Injection.html
Share on: