CVE-2024-25081

MEDIUM

FontForge <20230101 - Command Injection

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2024-25081. PoCs published by AliElKhatteb, InzegoSec.

AI-analyzed exploit summary The repository contains functional exploit code for CVE-2024-25081 (FontForge command injection via malicious ZIP filenames) and CVE-2025-47273 (setuptools path traversal for SSH key deployment). Both exploits are complete with reverse shell generation and HTTP server setup.

Description

Splinefont in FontForge through 20230101 allows command injection via crafted filenames.

Exploits (2)

nomisec WORKING POC
by InzegoSec · poc
https://github.com/InzegoSec/CVE-2024-25081_2025-47273

The repository contains functional exploit code for CVE-2024-25081 (FontForge command injection via malicious ZIP filenames) and CVE-2025-47273 (setuptools path traversal for SSH key deployment). Both exploits are complete with reverse shell generation and HTTP server setup.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: FontForge ≤ 20230101 and setuptools < 78.1.1
No auth needed
Prerequisites: network access to target · ability to deliver malicious ZIP file (CVE-2024-25081) · write access to sensitive directories (CVE-2025-47273)
devstral-2 · analyzed Mar 20, 2026 Full analysis →

Scores

CVSS v3 4.2
EPSS 0.0108
EPSS Percentile 60.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-77
Status published
Products (3)
debian/debian_linux 10.0
fedoraproject/fedora 40
fontforge/fontforge < 20230101
Published Feb 26, 2024
Tracked Since Feb 18, 2026