CVE-2023-45597

CVSS V2 None CVSS V3 None
Description
A CWE-1236 “Improper Neutralization of Formula Elements in a CSV File” vulnerability in the “file_configuration” functionality of the web application (concerning the function “export_file”) allows a remote authenticated attacker to inject arbitrary formulas inside generated CSV files. This issue affects: AiLux imx6 bundle below version imx6_1.0.7-2.
Overview
  • CVE ID
  • CVE-2023-45597
  • Assigner
  • Nozomi
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-03-05T11:32:18.971Z
  • Last Modified Date
  • 2024-03-05T11:32:18.971Z
History
Created Old Value New Value Data Type Notes
2024-06-25 10:04:26 Added to TrackCVE