CVE-2020-10460: Medium severity chadha software phpkb vulnerability
Published Mar 12, 2020
·Updated
admin/include/operations.php (via admin/email-harvester.php) in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject untrusted input inside CSV files via the POST parameter data.
Affected Software
1 affected component
Chadhaajay Phpkb=9.0
Event History
Mar 12, 2020
CVE Published
via MITRE·01:05 PM
Data Sourced
via MITRE·01:05 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for admin/include/operations.php (via admin/email-harvester.php) in Chadha PHPKB Standard Multi-Language 9?
The vulnerability ID is CVE-2020-10460.
2
What is the severity of CVE-2020-10460?
The severity of CVE-2020-10460 is medium with a severity value of 4.9.
3
How does CVE-2020-10460 affect Chadha PHPKB Standard Multi-Language 9?
CVE-2020-10460 allows attackers to inject untrusted input inside CSV files via the POST parameter data in Chadha PHPKB Standard Multi-Language 9.
4
What is the CWE ID for CVE-2020-10460?
The CWE ID for CVE-2020-10460 is 1236.
5
How can I fix CVE-2020-10460 in Chadha PHPKB Standard Multi-Language 9?
Please refer to the provided references for guidance on how to fix CVE-2020-10460 in Chadha PHPKB Standard Multi-Language 9.