Agiloft Release 28 does not properly neutralize special elements used in an EUI template engine, allowing an authenticated attacker to achieve remote code execution by loading a specially crafted payload. Users should upgrade to Agiloft Release 31.
2025-08-26T23:15:35.223
2025-09-02T17:58:53.867
Analyzed
9119a7d8-5eab-497f-8521-727c672e3725
CVSSv3.1: 5.9 (MEDIUM)