Description
A CSV injection vulnerability found in Online Invoicing System (OIS) 4.3 and below can be exploited by users to perform malicious actions such as redirecting admins to unknown or harmful websites, or disclosing other clients' details that the user did not have access to.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-14578 | A CSV injection vulnerability found in Online Invoicing System (OIS) 4.3 and below can be exploited by users to perform malicious actions such as redirecting admins to unknown or harmful websites, or disclosing other clients' details that the user did not have access to. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T21:33:16.053Z
Reserved: 2021-03-01T00:00:00.000Z
Link: CVE-2021-27839
No data.
Status : Modified
Published: 2021-03-03T19:15:13.047
Modified: 2024-11-21T05:58:37.593
Link: CVE-2021-27839
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD