PT-2018-12048 · Ibm · Ibm Content Navigator

Published

2018-02-07

·

Updated

2019-10-03

·

CVE-2018-1366

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IBM Content Navigator versions 2.0 through 3.0
Description The issue allows for Comma Separated Value (CSV) Injection, which could be exploited by an attacker to leverage other vulnerabilities in spreadsheet software, potentially leading to further exploitation.
Recommendations For versions 2.0 through 3.0, update to a version that addresses the CSV Injection issue to prevent potential exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2018-1366

Affected Products

Ibm Content Navigator