A CSV injection (aka Excel Macro Injection or Formula Injection) issue in i-doit 1.14.2 allows an attacker to execute arbitrary commands via a Title parameter that is mishandled in a CSV export.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-08-19T19:39:34

Updated: 2024-08-04T12:25:16.547Z

Reserved: 2020-06-04T00:00:00

Link: CVE-2020-13826

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-08-20T01:17:11.587

Modified: 2021-07-21T11:39:23.747

Link: CVE-2020-13826

cve-icon Redhat

No data.