ZeroHour

CVE-2022-40294

CVSS 3.1
8.8 high
EPSS
<1%p54
Published
()
Modified
Description

The application was identified to have an CSV injection in data export functionality, allowing for malicious code to be embedded within export data and then triggered in exported data viewers.

Vendors
phppointofsale
Products
php point of sale
Weakness
CWE-1236
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.