CVE-2025-35113

5.9MEDIUM

Agiloft Release 28 does not properly neutralize special elements used in an EUI template engine, allowing an authenticated attacker to achieve remote code execution by loading a specially crafted payl

게시됨: 8/26/2025업데이트됨: 9/2/2025

설명

Agiloft Release 28 does not properly neutralize special elements used in an EUI template engine, allowing an authenticated attacker to achieve remote code execution by loading a specially crafted payload. Users should upgrade to Agiloft Release 31.

AI 분석AI 기반

영향받는 제품

atlassianagiloft

참조