Vulnerability CVE-2024-32407


Published: 2024-04-22

Description:
An issue in inducer relate before v.2024.1 allows a remote attacker to execute arbitrary code via a crafted payload to the Page Sandbox feature.

 References:
https://book.hacktricks.xyz/v/jp/pentesting-web/ssti-server-side-template-injection
https://cxsecurity.com/issue/WLB-2024040049

Copyright 2024, cxsecurity.com

 

Back to Top