A improper neutralization of formula elements in a CSV...
High severity
Unreviewed
Published
Mar 7, 2023
to the GitHub Advisory Database
•
Updated Mar 22, 2023
Description
Published by the National Vulnerability Database
Mar 7, 2023
Published to the GitHub Advisory Database
Mar 7, 2023
Last updated
Mar 22, 2023
A improper neutralization of formula elements in a CSV file vulnerability in Fortinet FortiAnalyzer 6.4.0 - 6.4.9, 7.0.0 - 7.0.5, and 7.2.0 - 7.2.1 allows local attacker to execute unauthorized code or commands via inserting spreadsheet formulas in macro names.
References