CVE-2020-29023
16.02.2021, 16:15
Improper Encoding or Escaping of Output from CSV Report Generator of Secomea GateManager allows an authenticated administrator to generate a CSV file that may run arbitrary commands on a victim's computer when opened in a spreadsheet program (like Excel). This issue affects: Secomea GateManager all versions prior to 9.3.Enginsight
Vendor | Product | Version |
---|---|---|
secomea | gatemanager_4250_firmware | * |
secomea | gatemanager_4260_firmware | * |
secomea | gatemanager_9250_firmware | * |
secomea | gatemanager_8250_firmware | 𝑥 < 9.3 |
𝑥
= Vulnerable software versions