Red Hat CloudForms 4.7 and 5 is affected by CSV Injection flaw, a crafted payload stays dormant till a victim export as CSV and opens the file with Excel. Once the victim opens the file, the formula executes, triggering any number of possible events.
from Pocket https://ift.tt/31BLqo4
via IFTTT
No comments:
Post a Comment