CVE-2024-58303
FoF Pretty Mail 1.1.2 Server Side Template Injection via Email Template Settings
Description
FoF Pretty Mail 1.1.2 contains a server-side template injection vulnerability that allows administrative users to inject malicious code into email templates. Attackers can execute system commands by inserting crafted template expressions that trigger arbitrary code execution during email generation.
Weaknesses
Affected Products
Exploitability
Exploit details including PoC links, Metasploit modules, and scanner templates are available after registration.
View exploit detailsReferences
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2024-58303 and every CVE in our database. Create a free account — no credit card required.
Create Free Account