CVE-2016-10762

EUVD-2016-1756
The CampTix Event Ticketing plugin before 1.5 for WordPress allows CSV injection when the export tool is used.
Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
HIGH
NONE
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H