CSV Injection in Acyba AcySMS Extension for Joomla!

CSV Injection in Acyba AcySMS Extension for Joomla!

CVE-2018-9106 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the Acyba AcySMS extension before 3.5.1 for Joomla! via a value that is mishandled in a CSV export.

Learn more about our Web Application Penetration Testing UK.