CVE-2023-51336

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Feb 20, 2025
Updated: Feb 21, 2025
CWE ID 1236

Summary

CVE-2023-51336 represents a critical vulnerability in the PHPJabbers Meeting Room Booking System v1.0. An attacker can exploit this issue by injecting malicious code into CSV files through insufficient input validation on the Languages section's Labels any parameters field in System Options. This CSV Injection vulnerability enables an attacker to execute remote code, posing a significant security risk. Organizations using this software are advised to update to a secure version or implement proper input validation techniques to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share