Improper Neutralization of Formula Elements in a CSV File vulnerability in BestWebSoft Post to CSV by BestWebSoft.This issue affects Post to CSV by BestWebSoft: from n/a through 1.4.0.
oryginał ENCVSS Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:NBestwebsoft Post To Csv
APPBestwebsoft≤ 1.4.0
🟢
PATCH DOSTĘPNY
Aktualizacja od producenta gotowa. Wdrożenie w ramach standardowego cyklu.
CWE
Powiązane podatności
CVE-2022-3393CRITICAL9.8PL ✓ten sam produkt
CSV Injection w pluginie Post To CSV by BestWebSoft dla WordPress
CVE-2017-2171MEDIUM6.1ten sam produkt
Cross-site scripting vulnerability in Captcha prior to version 4.3.0, Car Rental prior to version 1.0.5, Conta...
CVE-2015-9335CRITICAL9.8PL ✓ten sam vendor
SQL injection w pluginie Limit Attempts dla WordPress (obsługa adresu IP)
CVE-2015-9325CRITICAL9.8PL ✓ten sam vendor
SQL injection w pluginie Visitors Online dla WordPress
CVE-2024-13908HIGH7.2ten sam vendor
The SMTP by BestWebSoft plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type ...