Логотип exploitDog
bind:CVE-2023-48029
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-48029

Количество 2

Количество 2

nvd логотип

CVE-2023-48029

около 2 лет назад

Corebos 8.0 and below is vulnerable to CSV Injection. An attacker with low privileges can inject a malicious command into a table. This vulnerability is exploited when an administrator visits the user management section, exports the data to a CSV file, and then opens it, leading to the execution of the malicious payload on the administrator's computer.

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-674m-h5xx-v6gp

около 2 лет назад

Corebos 8.0 and below is vulnerable to CSV Injection. An attacker with low privileges can inject a malicious command into a table. This vulnerability is exploited when an administrator visits the user management section, exports the data to a CSV file, and then opens it, leading to the execution of the malicious payload on the administrator's computer.

CVSS3: 8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-48029

Corebos 8.0 and below is vulnerable to CSV Injection. An attacker with low privileges can inject a malicious command into a table. This vulnerability is exploited when an administrator visits the user management section, exports the data to a CSV file, and then opens it, leading to the execution of the malicious payload on the administrator's computer.

CVSS3: 8
0%
Низкий
около 2 лет назад
github логотип
GHSA-674m-h5xx-v6gp

Corebos 8.0 and below is vulnerable to CSV Injection. An attacker with low privileges can inject a malicious command into a table. This vulnerability is exploited when an administrator visits the user management section, exports the data to a CSV file, and then opens it, leading to the execution of the malicious payload on the administrator's computer.

CVSS3: 8
0%
Низкий
около 2 лет назад

Уязвимостей на страницу