CVE-2020-36503

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/11/2021
Last modified:
03/11/2021

Description

The Connections Business Directory WordPress plugin before 9.7 does not validate or sanitise some connections' fields, which could lead to a CSV injection issue

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:connections-pro:connections_business_directory:*:*:*:*:*:wordpress:*:* 0.7.3.2 (including) 9.6 (including)