capture0x/Magento-ver.-2.4.6

capture0x/Magento-ver.-2.4.6

Releases0
Stars4
Magento ver. 2.4.6 - XSLT Server Side Injection

CVE History

CVEPublishedCVSS v3CVSS v2
7.2 HIGH

A XSLT Server Side injection vulnerability in the Import Jobs function of FireBear Improved Import And Export v3.8.6 allows attackers to execute arbitrary commands via a crafted XSLT file.