High severity7.2NVD Advisory· Published Feb 16, 2024· Updated Jun 17, 2026
CVE-2024-25413
CVE-2024-25413
Description
A XSLT Server Side injection vulnerability in the Import Jobs function of FireBear Improved Import And Export v3.8.6 allows attackers to execute arbitrary commands via a crafted XSLT file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:firebearstudio:improved_import_\&_export:3.8.6:*:*:*:*:magento:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: = 3.8.6
Patches
Vulnerability mechanics
References
1- packetstormsecurity.com/files/175801/FireBear-Improved-Import-And-Export-3.8.6-XSLT-Server-Side-Injection.htmlnvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.