← Back to CVE List

CVE-2024-24724

Published: 2024-04-03T03:15Z
Last Modified: 2024-11-21T08:59Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Gibbon through 26.0.00 allows /modules/School%20Admin/messengerSettings.php Server Side Template Injection leading to Remote Code Execution because input is passed to the Twig template engine (messengerSettings.php) without sanitization. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt