LimeSurvey Improper Neutralization of Formula Elements in a CSV File Vulnerability - CVE-2019-16184 - Vulnerability Database

LimeSurvey Improper Neutralization of Formula Elements in a CSV File Vulnerability - CVE-2019-16184

Critical
Reference: CVE-2019-16184
Title: LimeSurvey Improper Neutralization of Formula Elements in a CSV File Vulnerability
Overview:

A CSV injection vulnerability was found in Limesurvey before 3.17.14 that allows survey participants to inject commands via their survey responses that will be included in the export CSV file.