PT-2018-12048 · Ibm · Ibm Content Navigator
Publicado
2018-02-07
·
Atualizado
2019-10-03
·
CVE-2018-1366
CVSS v3.1
7.8
Alta
| Vetor | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
IBM Content Navigator versions 2.0 through 3.0
Description
The issue allows for Comma Separated Value (CSV) Injection, which could be exploited by an attacker to leverage other vulnerabilities in spreadsheet software, potentially leading to further exploitation.
Recommendations
For versions 2.0 through 3.0, update to a version that addresses the CSV Injection issue to prevent potential exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Ibm Content Navigator