Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gcp2-r7p4-r5p4

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Unvalidated input in the Contact Form 7 Database Addon plugin, versions before 1.2.5.6, was prone to a vulnerability that lets remote attackers inject arbitrary formulas into CSV files.

Unvalidated input in the Contact Form 7 Database Addon plugin, versions before 1.2.5.6, was prone to a vulnerability that lets remote attackers inject arbitrary formulas into CSV files.

EPSS

Процентиль: 61%
0.00414
Низкий

7.8 High

CVSS3

Дефекты

CWE-1236
CWE-74

Связанные уязвимости

CVSS3: 7.8
nvd
почти 5 лет назад

Unvalidated input in the Contact Form 7 Database Addon plugin, versions before 1.2.5.6, was prone to a vulnerability that lets remote attackers inject arbitrary formulas into CSV files.

EPSS

Процентиль: 61%
0.00414
Низкий

7.8 High

CVSS3

Дефекты

CWE-1236
CWE-74