Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Wshepherd0010

#27253de 53,634
9.3CVSS total
Vulnerabilidades · 1
PT-2018-18862
9.3
2018-04-26
Microbetrace · Microbetrace · CVE-2018-9113
**Name of the Vulnerable Software and Affected Versions** MicrobeTRACE version 0.1.12 **Description** The issue allows remote attackers to execute arbitrary code, related to code injection via a crafted CSV file with an initial '><script type="text/javascript" src=' line. **Recommendations** For MicrobeTRACE version 0.1.12, update to a version released after 2018-03-29 to resolve the issue. As a temporary workaround, consider restricting the import of CSV files or validating their content to prevent code injection attacks.