CVE-2024-32406

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/04/2024
Last modified:
17/12/2025

Description

Server-Side Template Injection (SSTI) vulnerability in inducer relate before v.2024.1 allows a remote attacker to execute arbitrary code via a crafted payload to the Batch-Issue Exam Tickets function.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:inducer:relate:*:*:*:*:*:*:*:* 2024.1 (excluding)