A Survey of the Overlooked Dangers of Template Engines
Abstract
Template engines play a pivotal role in modern web application development, facilitating the dynamic rendering of content, products, and user interfaces. Nowadays, template engines are essential in any website that deals with dynamic data, from e-commerce platforms to social media. However, their widespread use also makes them attractive targets for attackers seeking to exploit vulnerabilities and gain unauthorized access to web servers. This paper presents a comprehensive survey of template engines, focusing on their susceptibility to Remote Code Execution (RCE) attacks, a critical security concern in web application development.
- Publication:
-
arXiv e-prints
- Pub Date:
- May 2024
- DOI:
- 10.48550/arXiv.2405.01118
- arXiv:
- arXiv:2405.01118
- Bibcode:
- 2024arXiv240501118P
- Keywords:
-
- Computer Science - Cryptography and Security
- E-Print:
- 29 pages, 2 figures