CVE-2019-16120
08.09.2019, 23:15
CSV injection in the event-tickets (Event Tickets) plugin before 4.10.7.2 for WordPress exists via the "All Post> Ticketed > Attendees" Export Attendees feature.Enginsight
Vendor | Product | Version |
---|---|---|
liquidweb | event_tickets | 𝑥 < 4.10.7.2 |
𝑥
= Vulnerable software versions