Description
A CSV Injection vulnerability was discovered in Shopy Point of Sale v1.0 that allows a user with low level privileges to inject a command that will be included in the exported CSV file, leading to possible code execution.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-2332 | A CSV Injection vulnerability was discovered in Shopy Point of Sale v1.0 that allows a user with low level privileges to inject a command that will be included in the exported CSV file, leading to possible code execution. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T07:32:01.708Z
Reserved: 2018-04-21T00:00:00.000Z
Link: CVE-2018-10258
No data.
Status : Modified
Published: 2018-05-01T19:29:01.420
Modified: 2024-11-21T03:41:07.760
Link: CVE-2018-10258
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD