Output validation vulnerability in Business Directory Plugin – Easy Listing Directories for WordPress 6.4.3

The Business Directory Plugin for WordPress has a security issue called CSV Injection in versions up to 6.4.3. This means that attackers who are logged in with certain permissions can insert malicious content into CSV files created by administrators. If these files are downloaded and opened on a vulnerable system, it can lead to code execution.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.