Lucene search

K
osvGoogleOSV:CVE-2020-15301
HistoryNov 18, 2020 - 9:15 p.m.

CVE-2020-15301

2020-11-1821:15:11
Google
osv.dev
3
suitecrm
7.11.13
csv injection
registration fields
mishandling

AI Score

7.1

Confidence

Low

EPSS

0.001

Percentile

27.2%

SuiteCRM through 7.11.13 allows CSV Injection via registration fields in the Accounts, Contacts, Opportunities, and Leads modules. These fields are mishandled during a Download Import File Template operation.

AI Score

7.1

Confidence

Low

EPSS

0.001

Percentile

27.2%

Related for OSV:CVE-2020-15301