Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ph7h-74xq-935c

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to execute arbitrary code on the system, caused by a CSV injection. By persuading a victim to open a specially-crafted excel file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 176610.

IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to execute arbitrary code on the system, caused by a CSV injection. By persuading a victim to open a specially-crafted excel file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 176610.

EPSS

Процентиль: 80%
0.01367
Низкий

Дефекты

CWE-755

Связанные уязвимости

CVSS3: 7.8
nvd
больше 5 лет назад

IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to execute arbitrary code on the system, caused by a CSV injection. By persuading a victim to open a specially-crafted excel file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 176610.

EPSS

Процентиль: 80%
0.01367
Низкий

Дефекты

CWE-755