Vulnerabilities (CVE)

Filtered by CWE-1236
Total 201 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-14749 1 Osticket 1 Osticket 2024-11-21 6.8 MEDIUM 8.8 HIGH
An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1. CSV (aka Formula) injection exists in the export spreadsheets functionality. These spreadsheets are generated dynamically from unvalidated or unfiltered user input in the Name and Internal Notes fields in the Users tab, and the Issue Summary field in the tickets tab. This allows other agents to download data in a .csv file format or .xls file format. This is used as input for spreadsheet applications such as Excel and OpenOffice Calc, resulting in a situation where cells in the spreadsheets can contain input from an untrusted source. As a result, the end user who is accessing the exported spreadsheet can be affected.
CVE-2019-14352 1 Joget 1 Worfklow 2024-11-21 6.8 MEDIUM 7.8 HIGH
In Joget Workflow 6.0.20, CSV Injection, also known as Formula Injection, exists, as demonstrated by jw/web/userview/crm_community/crm_userview_sales/_/account_new with the Account ID or Account Name field. NOTE: the vendor disputes the relevance of this finding because CSV is not the intended export format for spreadsheet applications
CVE-2019-13181 1 Solarwinds 1 Serv-u Ftp Server 2024-11-21 4.0 MEDIUM 6.5 MEDIUM
A CSV injection vulnerability exists in the web UI of SolarWinds Serv-U FTP Server v15.1.7.
CVE-2019-13144 1 Mytinytodo 1 Mytinytodo 2024-11-21 7.5 HIGH 9.8 CRITICAL
myTinyTodo 1.3.3 through 1.4.3 allows CSV Injection. This is fixed in 1.5.
CVE-2019-12961 1 Livezilla 1 Livezilla 2024-11-21 6.8 MEDIUM 8.8 HIGH
LiveZilla Server before 8.0.1.1 is vulnerable to CSV Injection in the Export Function.
CVE-2019-12765 1 Joomla 1 Joomla\! 2024-11-21 7.5 HIGH 9.8 CRITICAL
An issue was discovered in Joomla! before 3.9.7. The CSV export of com_actionslogs is vulnerable to CSV injection.
CVE-2019-12134 1 Workday 1 Workday 2024-11-21 6.5 MEDIUM 8.8 HIGH
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in Workday through 32 via a value (provided by a low-privileged user in a contact form field) that is mishandled in a CSV export.
CVE-2019-11872 1 Incsub 1 Hustle 2024-11-21 6.8 MEDIUM 8.8 HIGH
The Hustle (aka wordpress-popup) plugin 6.0.7 for WordPress is vulnerable to CSV Injection as it allows for injecting malicious code into a pop-up window. Successful exploitation grants an attacker with a right to execute malicious code on the administrator's computer through Excel functions as the plugin does not sanitize the user's input and allows insertion of any text.
CVE-2019-11819 1 Alkacon 1 Opencms 2024-11-21 6.8 MEDIUM 7.8 HIGH
Alkacon OpenCMS v10.5.4 and before is affected by CSV (aka Excel Macro) Injection in the module New User (/opencms/system/workplace/admin/accounts/user_new.jsp) via the First Name or Last Name.
CVE-2019-11275 2 Pivotal, Pivotal Software 2 Apps Manager, Pivotal Application Service 2024-11-21 4.0 MEDIUM 4.3 MEDIUM
Pivotal Application Manager, versions 666.0.x prior to 666.0.36, versions 667.0.x prior to 667.0.22, versions 668.0.x prior to 668.0.21, versions 669.0.x prior to 669.0.13, and versions 670.0.x prior to 670.0.7, contain a vulnerability where a remote authenticated user can create an app with a name such that a csv program can interpret into a formula and gets executed. The malicious user can possibly gain access to a usage report that requires a higher privilege.
CVE-2019-0403 1 Sap 1 Enable Now 2024-11-21 7.5 HIGH 9.8 CRITICAL
SAP Enable Now, before version 1911, allows an attacker to input commands into the CSV files, which will be executed when opened, leading to CSV Command Injection.
CVE-2018-9137 1 Open-audit 1 Open-audit 2024-11-21 3.5 LOW 6.8 MEDIUM
Open-AudIT before 2.2 has CSV Injection.
CVE-2018-9107 1 Acyba 1 Acymailing 2024-11-21 6.8 MEDIUM 8.8 HIGH
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the Acyba AcyMailing extension before 5.9.6 for Joomla! via a value that is mishandled in a CSV export.
CVE-2018-9106 1 Acyba 1 Acysms 2024-11-21 6.8 MEDIUM 8.8 HIGH
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the Acyba AcySMS extension before 3.5.1 for Joomla! via a value that is mishandled in a CSV export.
CVE-2018-9035 1 Contact-form-7-to-database-extension Project 1 Contact-form-7-to-database-extension 2024-11-21 6.8 MEDIUM 9.6 CRITICAL
CSV Injection vulnerability in ExportToCsvUtf8.php of the Contact Form 7 to Database Extension plugin 2.10.32 for WordPress allows remote attackers to inject spreadsheet formulas into CSV files via the contact form.
CVE-2018-8092 1 Mautic 1 Mautic 2024-11-21 7.5 HIGH 9.8 CRITICAL
Mautic before 2.13.0 allows CSV injection.
CVE-2018-7304 1 Tiki 1 Tiki 2024-11-21 6.5 MEDIUM 8.8 HIGH
Tiki 17.1 does not validate user input for special characters; consequently, a CSV Injection attack can open a CMD.EXE or Calculator window on the victim machine to perform malicious activity, as demonstrated by an "=cmd|' /C calc'!A0" payload during User Creation.
CVE-2018-7201 1 Projectsend 1 Projectsend 2024-11-21 6.8 MEDIUM 8.8 HIGH
CSV Injection was discovered in ProjectSend before r1053, affecting victims who import the data into Microsoft Excel.
CVE-2018-20752 1 Recon-ng Project 1 Recon-ng 2024-11-21 7.5 HIGH 9.8 CRITICAL
An issue was discovered in Recon-ng before 4.9.5. Lack of validation in the modules/reporting/csv.py file allows CSV injection. More specifically, when a Twitter user possesses an Excel macro for a username, it will not be properly sanitized when exported to a CSV file. This can result in remote code execution for the attacker.
CVE-2018-20468 1 Sahipro 1 Sahi Pro 2024-11-21 6.8 MEDIUM 8.8 HIGH
An issue was discovered in Tyto Sahi Pro through 7.x.x and 8.0.0. A web reports module has "export to excel features" that are vulnerable to CSV injection. An attacker can embed Excel formulas inside an automation script that, when exported after execution, results in code execution.