Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-58293

Опубликовано: 11 дек. 2025
Источник: nvd
EPSS Низкий

Описание

Akaunting 3.1.8 contains a server-side template injection vulnerability that allows authenticated administrators to execute template expressions in multiple form input fields. Attackers can inject template payloads in items, taxes, transactions, and vendor name fields to perform arithmetic operations and string manipulations.

EPSS

Процентиль: 19%
0.00062
Низкий

Дефекты

CWE-1336

Связанные уязвимости

github
около 2 месяцев назад

Akaunting 3.1.8 contains a server-side template injection vulnerability that allows authenticated administrators to execute template expressions in multiple form input fields. Attackers can inject template payloads in items, taxes, transactions, and vendor name fields to perform arithmetic operations and string manipulations.

EPSS

Процентиль: 19%
0.00062
Низкий

Дефекты

CWE-1336