{ "id": "CVE-2024-48138", "sourceIdentifier": "cve@mitre.org", "published": "2024-10-29T22:15:03.810", "lastModified": "2024-10-29T22:15:03.810", "vulnStatus": "Received", "cveTags": [], "descriptions": [ { "lang": "en", "value": "A remote code execution (RCE) vulnerability in the component /PluXml/core/admin/parametres_edittpl.php of PluXml v5.8.16 and lower allows attackers to execute arbitrary code via injecting a crafted payload into a template." } ], "metrics": {}, "references": [ { "url": "https://github.com/pluxml/PluXml/issues/829", "source": "cve@mitre.org" } ] }