Description
IBM Robotic Process Automation with Automation Anywhere 10.0 could allow a remote attacker to execute arbitrary code on the system, caused by improper output encoding in an CSV export. By persuading a victim to download the CSV export, to open it in Microsoft Excel and to confirm the two security questions, an attacker could exploit this vulnerability to run any command or program on the victim's machine. IBM X-Force ID: 142651.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-12126 | IBM Robotic Process Automation with Automation Anywhere 10.0 could allow a remote attacker to execute arbitrary code on the system, caused by improper output encoding in an CSV export. By persuading a victim to download the CSV export, to open it in Microsoft Excel and to confirm the two security questions, an attacker could exploit this vulnerability to run any command or program on the victim's machine. IBM X-Force ID: 142651. |
References
History
No history.
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2024-09-16T23:55:25.268Z
Reserved: 2017-12-13T00:00:00.000Z
Link: CVE-2018-1547
No data.
Status : Modified
Published: 2018-06-07T14:29:00.313
Modified: 2024-11-21T03:59:59.637
Link: CVE-2018-1547
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD