Описание
An issue was discovered in WeCube Platform 3.2.2. There are multiple CSV injection issues: the [Home / Admin / Resources] page, the [Home / Admin / System Params] page, and the [Home / Design / Basekey Configuration] page.
Ссылки
- Third Party Advisory
- ExploitThird Party Advisory
- Third Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:wecube-platform_project:wecube-platform:3.2.2:*:*:*:*:*:*:*
EPSS
Процентиль: 46%
0.00236
Низкий
6.3 Medium
CVSS3
Дефекты
CWE-1236
CWE-1236
Связанные уязвимости
CVSS3: 6.3
github
около 3 лет назад
An issue was discovered in WeCube Platform 3.2.2. There are multiple CSV injection issues: the [Home / Admin / Resources] page, the [Home / Admin / System Params] page, and the [Home / Design / Basekey Configuration] page.
EPSS
Процентиль: 46%
0.00236
Низкий
6.3 Medium
CVSS3
Дефекты
CWE-1236
CWE-1236