Vulnerability CVE-2024-25413


Published: 2024-02-16

Description:
A XSLT Server Side injection vulnerability in the Import Jobs function of FireBear Improved Import And Export v3.8.6 allows attackers to execute arbitrary commands via a crafted XSLT file.

 References:
https://github.com/capture0x/Magento-ver.-2.4.6
https://packetstormsecurity.com/files/175801/FireBear-Improved-Import-And-Export-3.8.6-XSLT-Server-Side-Injection.html

Copyright 2026, cxsecurity.com

 

Back to Top