CVE-2023-48835

Car Rental Script v3.0 is vulnerable to CSV Injection via a Language > Labels > Export action.
References
Link Resource
https://www.phpjabbers.com/car-rental-script/ Product
http://packetstormsecurity.com/files/176045 Exploit Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:phpjabbers:car_rental_script:3.0:*:*:*:*:*:*:*

History

09 Dec 2023, 04:48

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
CPE cpe:2.3:a:phpjabbers:car_rental_script:3.0:*:*:*:*:*:*:*
CWE CWE-74
First Time Phpjabbers
Phpjabbers car Rental Script
References () http://packetstormsecurity.com/files/176045 - () http://packetstormsecurity.com/files/176045 - Exploit, Third Party Advisory, VDB Entry
References () https://www.phpjabbers.com/car-rental-script/ - () https://www.phpjabbers.com/car-rental-script/ - Product

07 Dec 2023, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-07 07:15

Updated : 2023-12-09 04:48


NVD link : CVE-2023-48835

Mitre link : CVE-2023-48835


JSON object : View

Products Affected

phpjabbers

  • car_rental_script
CWE
CWE-74

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')