Логотип exploitDog
bind:CVE-2024-58293
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-58293

Количество 2

Количество 2

nvd логотип

CVE-2024-58293

около 2 месяцев назад

Akaunting 3.1.8 contains a server-side template injection vulnerability that allows authenticated administrators to execute template expressions in multiple form input fields. Attackers can inject template payloads in items, taxes, transactions, and vendor name fields to perform arithmetic operations and string manipulations.

EPSS: Низкий
github логотип

GHSA-j57q-ff7h-j5xj

около 2 месяцев назад

Akaunting 3.1.8 contains a server-side template injection vulnerability that allows authenticated administrators to execute template expressions in multiple form input fields. Attackers can inject template payloads in items, taxes, transactions, and vendor name fields to perform arithmetic operations and string manipulations.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-58293

Akaunting 3.1.8 contains a server-side template injection vulnerability that allows authenticated administrators to execute template expressions in multiple form input fields. Attackers can inject template payloads in items, taxes, transactions, and vendor name fields to perform arithmetic operations and string manipulations.

0%
Низкий
около 2 месяцев назад
github логотип
GHSA-j57q-ff7h-j5xj

Akaunting 3.1.8 contains a server-side template injection vulnerability that allows authenticated administrators to execute template expressions in multiple form input fields. Attackers can inject template payloads in items, taxes, transactions, and vendor name fields to perform arithmetic operations and string manipulations.

0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу