Vulnerabilities in Popular Fonts Allow XXE & Arbitrary Command Attacks

Post Reply
Shane1145
Posts: 1689
Joined: Wed Sep 25, 2024 2:31 pm

Vulnerabilities in Popular Fonts Allow XXE & Arbitrary Command Attacks

Post by Shane1145 »

The popular fonts used in web development and design can be exploited to launch XML External Entity (XXE) attacks and execute arbitrary commands.

These vulnerabilities, identified as CVE-2023-45139, CVE-2024-25081, and CVE-2024-25082, pose a significant threat, allowing for XML External Entity (XXE) attacks and arbitrary command execution.


https://cybersecuritynews.com/vulnerabi ... arbitrary/
Post Reply