Логотип exploitDog
bind:CVE-2022-38844
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-38844

Количество 2

Количество 2

nvd логотип

CVE-2022-38844

больше 3 лет назад

CSV Injection in Create Contacts in EspoCRM 7.1.8 allows remote authenticated users to run system commands via creating contacts with payloads capable of executing system commands. Admin user exporting contacts in CSV file may end up executing the malicious system commands on his system.

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-pvj2-28fw-3gc8

больше 3 лет назад

CSV Injection in Create Contacts in EspoCRM 7.1.8 allows remote authenticated users to run system commands via creating contacts with payloads capable of executing system commands. Admin user exporting contacts in CSV file may end up executing the malicious system commands on his system.

CVSS3: 8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-38844

CSV Injection in Create Contacts in EspoCRM 7.1.8 allows remote authenticated users to run system commands via creating contacts with payloads capable of executing system commands. Admin user exporting contacts in CSV file may end up executing the malicious system commands on his system.

CVSS3: 8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-pvj2-28fw-3gc8

CSV Injection in Create Contacts in EspoCRM 7.1.8 allows remote authenticated users to run system commands via creating contacts with payloads capable of executing system commands. Admin user exporting contacts in CSV file may end up executing the malicious system commands on his system.

CVSS3: 8
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу