Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qgf9-6cxx-q2qv

Опубликовано: 04 апр. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

CSV Injection vulnerability in Addactis IBNRS v.3.10.3.107 allows a remote attacker to execute arbitrary code via a crafted .ibnrs file to the Project Description, Identifiers, Custom Triangle Name (inside Input Triangles) and Yield Curve Name parameters.

CSV Injection vulnerability in Addactis IBNRS v.3.10.3.107 allows a remote attacker to execute arbitrary code via a crafted .ibnrs file to the Project Description, Identifiers, Custom Triangle Name (inside Input Triangles) and Yield Curve Name parameters.

EPSS

Процентиль: 93%
0.10226
Средний

9.8 Critical

CVSS3

Дефекты

CWE-1236

Связанные уязвимости

CVSS3: 9.8
nvd
почти 2 года назад

CSV Injection vulnerability in Addactis IBNRS v.3.10.3.107 allows a remote attacker to execute arbitrary code via a crafted .ibnrs file to the Project Description, Identifiers, Custom Triangle Name (inside Input Triangles) and Yield Curve Name parameters.

EPSS

Процентиль: 93%
0.10226
Средний

9.8 Critical

CVSS3

Дефекты

CWE-1236