CVEs Blog | G5 Cyber Security

CVE-2020-15301 – SuiteCRM through 7.11.13 allows CSV Injection via registration fields in

SuiteCRM through 7.11.13 allows CSV Injection via registration fields in the Accounts, Contacts, Opportunities, and Leads modules. These fields are mishandled during a Download Import File Template operation.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15301

Reference (s):

Exit mobile version