CSV Injection exists in InterMind iMind Server through 3.13.65 via the csv export functionality.
References
Link | Resource |
---|---|
https://github.com/h3llraiser/CVE-2020-25398 | Exploit Third Party Advisory |
Configurations
Information
Published : 2020-11-05 08:15
Updated : 2020-11-12 08:31
NVD link : CVE-2020-25398
Mitre link : CVE-2020-25398
JSON object : View
CWE
CWE-1236
Improper Neutralization of Formula Elements in a CSV File
Products Affected
mind
- imind_server