Server Side Template Injection (SSTI) vulnerability in Form Tools 3.1.1 allows attackers to run arbitrary commands via the Group Name field under the add forms section of the application.
Metrics
Affected Vendors & Products
References
History
Tue, 08 Apr 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Formtools
Formtools form Tools |
|
| CPEs | cpe:2.3:a:formtools:form_tools:3.1.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Formtools
Formtools form Tools |
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-01T22:51:11.111Z
Reserved: 2024-01-11T00:00:00
Link: CVE-2024-22722
Updated: 2024-08-01T22:51:11.111Z
Status : Analyzed
Published: 2024-04-11T20:15:33.417
Modified: 2025-04-08T15:20:57.363
Link: CVE-2024-22722
No data.