In the CSV export feature of SilverStripe before 3.5.6, 3.6.x before 3.6.3, and 4.x before 4.0.1, it's possible for the output to contain macros and scripts, which may be executed if imported without sanitization into common software (including Microsoft Excel). For example, the CSV data may contain untrusted user input from the "First Name" field of a user's /myprofile page.
References
Link | Resource |
---|---|
https://www.exploit-db.com/exploits/43396/ | Exploit Third Party Advisory VDB Entry |
https://www.silverstripe.org/download/security-releases/ss-2017-007 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2018-01-23T06:00:00
Updated: 2018-01-23T05:57:02
Reserved: 2018-01-22T00:00:00
Link: CVE-2017-18049
JSON object: View
NVD Information
Status : Analyzed
Published: 2018-01-23T06:29:00.277
Modified: 2018-02-13T16:17:02.963
Link: CVE-2017-18049
JSON object: View
Redhat Information
No data.
CWE