CVE-2020-13826
20.08.2020, 01:17
A CSV injection (aka Excel Macro Injection or Formula Injection) issue in i-doit 1.14.2 allows an attacker to execute arbitrary commands via a Title parameter that is mishandled in a CSV export.Enginsight
Vendor | Product | Version |
---|---|---|
i-doit | i-doit | 𝑥 ≤ 1.14.2 |
𝑥
= Vulnerable software versions