Логотип exploitDog
bind:CVE-2020-22390
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-22390

Количество 2

Количество 2

nvd логотип

CVE-2020-22390

больше 4 лет назад

Akaunting <= 2.0.9 is vulnerable to CSV injection in the Item name field, export function. Attackers can inject arbitrary code into the name parameter and perform code execution when the crafted file is opened.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-jg4q-mprj-p635

больше 3 лет назад

Akaunting <= 2.0.9 is vulnerable to CSV injection in the Item name field, export function. Attackers can inject arbitrary code into the name parameter and perform code execution when the crafted file is opened.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-22390

Akaunting <= 2.0.9 is vulnerable to CSV injection in the Item name field, export function. Attackers can inject arbitrary code into the name parameter and perform code execution when the crafted file is opened.

CVSS3: 8.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-jg4q-mprj-p635

Akaunting <= 2.0.9 is vulnerable to CSV injection in the Item name field, export function. Attackers can inject arbitrary code into the name parameter and perform code execution when the crafted file is opened.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу