CVE-2019-15092 | Webtoffee WordPress Users 1.3.0 on WordPress WF_CustomerImpExpCsv_Exporter CSV File injection (ID 154203 / EDB-47303)
A vulnerability, which was classified as critical, was found in Webtoffee WordPress Users and WooCommerce Customers Import Export Plugin 1.3.0 on WordPress. This issue affects the function WF_CustomerImpExpCsv_Exporter. Executing manipulation as part of CSV File can lead to injection.
This vulnerability is handled as CVE-2019-15092. It is possible to launch the attack on the local host. Additionally, an exploit exists.