The Export Users to CSV plugin through 1.4.2 for WordPress allows CSV Injection.
References
Link | Resource |
---|---|
https://www.getastra.com/blog/911/plugin-exploit/csv-injection-in-export-users-to-csv-wordpress-plugin/ | Third Party Advisory |
https://wpvulndb.com/vulnerabilities/10094 | Third Party Advisory |
https://www.jinsonvarghese.com/csv-injection-in-export-users-to-csv-plugin/ | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-02-28 12:15
Updated : 2021-07-21 04:39
NVD link : CVE-2020-9466
Mitre link : CVE-2020-9466
JSON object : View
CWE
CWE-1236
Improper Neutralization of Formula Elements in a CSV File
Products Affected
export_users_to_csv_project
- export_users_to_csv