Vulnerability Details CVE-2018-7201
CSV Injection was discovered in ProjectSend before r1053, affecting victims who import the data into Microsoft Excel.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 64.8%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.8
Products affected by CVE-2018-7201
-
cpe:2.3:a:projectsend:projectsend:100
-
cpe:2.3:a:projectsend:projectsend:102
-
cpe:2.3:a:projectsend:projectsend:105
-
cpe:2.3:a:projectsend:projectsend:110
-
cpe:2.3:a:projectsend:projectsend:155
-
cpe:2.3:a:projectsend:projectsend:156
-
cpe:2.3:a:projectsend:projectsend:157
-
cpe:2.3:a:projectsend:projectsend:161
-
cpe:2.3:a:projectsend:projectsend:180
-
cpe:2.3:a:projectsend:projectsend:335
-
cpe:2.3:a:projectsend:projectsend:375
-
cpe:2.3:a:projectsend:projectsend:405
-
cpe:2.3:a:projectsend:projectsend:412
-
cpe:2.3:a:projectsend:projectsend:514
-
cpe:2.3:a:projectsend:projectsend:559
-
cpe:2.3:a:projectsend:projectsend:561
-
cpe:2.3:a:projectsend:projectsend:582
-
cpe:2.3:a:projectsend:projectsend:753
-
cpe:2.3:a:projectsend:projectsend:754
-
cpe:2.3:a:projectsend:projectsend:756