First published: Thu Feb 20 2025(Updated: )
PHPJabbers Meeting Room Booking System v1.0 is vulnerable to CSV Injection vulnerability which allows an attacker to execute remote code. The vulnerability exists due to insufficient input validation on Languages section Labels any parameters field in System Options that is used to construct CSV file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
John Beranek Meeting Room Booking System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-51336 is classified as a medium-severity vulnerability due to its potential for remote code execution.
To fix CVE-2023-51336, ensure proper input validation and sanitization for the Languages section Labels parameters in the System Options.
CVE-2023-51336 is a CSV injection vulnerability that can lead to remote code execution.
CVE-2023-51336 affects PHPJabbers Meeting Room Booking System version 1.0.
Yes, CVE-2023-51336 can potentially lead to data breaches due to the ability for attackers to execute arbitrary code.