Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pqq7-c8rq-2955

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

BooleBox Secure File Sharing Utility (potentially all versions) allows CSV injection via a crafted user name that is mishandled during export from the activity logs in the Audit Area.

BooleBox Secure File Sharing Utility (potentially all versions) allows CSV injection via a crafted user name that is mishandled during export from the activity logs in the Audit Area.

EPSS

Процентиль: 71%
0.00663
Низкий

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 7.3
nvd
больше 5 лет назад

BooleBox Secure File Sharing Utility before 4.2.3.0 allows CSV injection via a crafted user name that is mishandled during export from the activity logs in the Audit Area.

EPSS

Процентиль: 71%
0.00663
Низкий

Дефекты

CWE-74