Event Tickets and Registration, CVE-2019-16120
- CVE, Research URL
- Home page URL
- Application
- Published on
- Sep 09, 2019
- Research Description
- CSV injection in the event-tickets (Event Tickets) plugin before 4.10.7.2 for WordPress exists via the "All Post> Ticketed > Attendees" Export Attendees feature.
- Affected versions
-
max 5.3.0.1.
- Status
-
vulnerable