CVE-2018-19855

UiPath Orchestrator before 2018.3.4 allows CSV Injection, related to the Audit export, Robot log export, and Transaction log export features.
Configurations

Configuration 1 (hide)

cpe:2.3:a:uipath:orchestrator:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-08-08 13:15

Updated : 2024-02-28 17:08


NVD link : CVE-2018-19855

Mitre link : CVE-2018-19855

CVE.ORG link : CVE-2018-19855


JSON object : View

Products Affected

uipath

  • orchestrator
CWE
CWE-1236

Improper Neutralization of Formula Elements in a CSV File