CVE-2018-9107
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the Acyba AcyMailing extension before 5.9.6 for Joomla!
HIGH
acymailing
Description
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the Acyba AcyMailing extension before 5.9.6 for Joomla! via a value that is mishandled in a CSV export.
Sévérité
8.8
Élevée · CVSS 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Score retenu : NVD
| Source | Sévérité d'origine | CVSS |
|---|---|---|
| NVD | HIGH | 8.8 (v3.0) |
Produit et versions
- Produit
- acymailing
- Corrigée dans
- Non précisée
- Publiée
- 28/03/2018
- Modifiée
- 17/06/2026
- CWE
- CWE-1236
Versions concernées
- acymailing — jusqu'à 5.9.5
Sources
- NVD CVE-2018-9107 vu
Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.
Historique
- Détectée via nvd26/09/2026 09:34 UTC