PT-2018-12048 · Ibm · Ibm Content Navigator
Published
2018-02-07
·
Updated
2019-10-03
·
CVE-2018-1366
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
IBM Content Navigator versions 2.0 through 3.0
Description
The issue allows for Comma Separated Value (CSV) Injection, which could be exploited by an attacker to leverage other vulnerabilities in spreadsheet software, potentially leading to further exploitation.
Recommendations
For versions 2.0 through 3.0, update to a version that addresses the CSV Injection issue to prevent potential exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Content Navigator