The Connections Business Directory WordPress plugin before 9.7 does not validate or sanitise some connections' fields, which could lead to a CSV injection issue
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2021-11-01T08:45:53

Updated: 2024-08-04T17:30:08.250Z

Reserved: 2021-10-25T00:00:00

Link: CVE-2020-36503

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-11-01T09:15:08.257

Modified: 2021-11-03T14:35:17.730

Link: CVE-2020-36503

cve-icon Redhat

No data.