Description
A CSV Injection vulnerability was discovered in HRSALE The Ultimate HRM v1.0.2 that allows a user with low level privileges to inject a command that will be included in the exported CSV file, leading to possible code execution.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-2331 | A CSV Injection vulnerability was discovered in HRSALE The Ultimate HRM v1.0.2 that allows a user with low level privileges to inject a command that will be included in the exported CSV file, leading to possible code execution. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T07:32:01.639Z
Reserved: 2018-04-21T00:00:00.000Z
Link: CVE-2018-10257
No data.
Status : Modified
Published: 2018-05-01T19:29:01.357
Modified: 2024-11-21T03:41:07.613
Link: CVE-2018-10257
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD