A CSV injection vulnerability was found in Limesurvey before 3.17.14 that allows survey participants to inject commands via their survey responses that will be included in the export CSV file.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-09-09T20:27:17

Updated: 2019-09-09T20:27:17

Reserved: 2019-09-09T00:00:00


Link: CVE-2019-16184

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-09-09T21:15:11.887

Modified: 2020-08-24T17:37:01.140


Link: CVE-2019-16184

JSON object: View

cve-icon Redhat Information

No data.

CWE