Description
The Visual Form Builder WordPress plugin before 3.0.8 is vulnerable to CSV injection allowing a user with low level or no privileges to inject a command that will be included in the exported CSV file, leading to possible code execution.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-15355 | The Visual Form Builder WordPress plugin before 3.0.8 is vulnerable to CSV injection allowing a user with low level or no privileges to inject a command that will be included in the exported CSV file, leading to possible code execution. |
References
History
No history.
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-08-02T23:18:41.999Z
Reserved: 2022-01-06T00:00:00.000Z
Link: CVE-2022-0142
No data.
Status : Modified
Published: 2022-04-12T12:15:08.287
Modified: 2024-11-21T06:37:59.533
Link: CVE-2022-0142
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD