Vulnerabilities > Firebearstudio

DATE CVE VULNERABILITY TITLE RISK
2024-02-16 CVE-2024-25413 XML Injection (aka Blind XPath Injection) vulnerability in Firebearstudio Improved Import & Export 3.8.6
A XSLT Server Side injection vulnerability in the Import Jobs function of FireBear Improved Import And Export v3.8.6 allows attackers to execute arbitrary commands via a crafted XSLT file.
network
low complexity
firebearstudio CWE-91
7.2