Описание
Kimai is a web-based multi-user time-tracking application. Versions prior to 2.1.0 are vulnerable to a Server-Side Template Injection (SSTI) which can be escalated to Remote Code Execution (RCE). The vulnerability arises when a malicious user uploads a specially crafted Twig file, exploiting the software's PDF and HTML rendering functionalities. Version 2.1.0 enables security measures for custom Twig templates.
Ссылки
- ExploitVendor Advisory
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.10 (включая)
cpe:2.3:a:kimai:kimai:*:*:*:*:*:*:*:*
EPSS
Процентиль: 84%
0.0227
Низкий
7.2 High
CVSS3
Дефекты
CWE-1336
NVD-CWE-Other
Связанные уязвимости
CVSS3: 7.2
github
больше 2 лет назад
Kimai (Authenticated) SSTI to RCE by Uploading a Malicious Twig File
EPSS
Процентиль: 84%
0.0227
Низкий
7.2 High
CVSS3
Дефекты
CWE-1336
NVD-CWE-Other