Tuesday, August 11, 2020

New vulnerability on the NVD: CVE-2020-10780



Red Hat CloudForms 4.7 and 5 is affected by CSV Injection flaw, a crafted payload stays dormant till a victim export as CSV and opens the file with Excel. Once the victim opens the file, the formula executes, triggering any number of possible events.

from Pocket https://ift.tt/31BLqo4
via IFTTT

No comments:

Post a Comment