Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-5349

Опубликовано: 11 апр. 2016
Источник: debian

Описание

The CSV export in Apache LDAP Studio and Apache Directory Studio before 2.0.0-M10 does not properly escape field values, which might allow attackers to execute arbitrary commands by leveraging a crafted LDAP entry that is interpreted as a formula when imported into a spreadsheet.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
apache-directory-servernot-affectedpackage

Связанные уязвимости

CVSS3: 7.8
redhat
почти 10 лет назад

The CSV export in Apache LDAP Studio and Apache Directory Studio before 2.0.0-M10 does not properly escape field values, which might allow attackers to execute arbitrary commands by leveraging a crafted LDAP entry that is interpreted as a formula when imported into a spreadsheet.

CVSS3: 7.8
nvd
почти 10 лет назад

The CSV export in Apache LDAP Studio and Apache Directory Studio before 2.0.0-M10 does not properly escape field values, which might allow attackers to execute arbitrary commands by leveraging a crafted LDAP entry that is interpreted as a formula when imported into a spreadsheet.

CVSS3: 7.8
github
больше 3 лет назад

Apache Directory Studio Command Injection