Description
The admin backend in phpMyFAQ before 2.9.11 allows CSV injection in reports.
Remediation
References
Related Vulnerabilities
WordPress Plugin Login Logout Menu Cross-Site Scripting (1.3.3)
WordPress Plugin CM Ad Changer Cross-Site Scripting (1.7.7)
Oracle HTTP Server CVE-2018-2760 Vulnerability (CVE-2018-2760)
WordPress Plugin Pods-Custom Content Types and Fields Malicious Code (3.2.3)
WordPress Plugin WooCommerce Salesforce Integration Cross-Site Scripting (1.5.8)