vendor:
Open-AudIT
by:
Sureshbabu Narvaneni
6.8
CVSS
MEDIUM
CSV Injection
79
CWE
Product Name: Open-AudIT
Affected Version From: 2.1
Affected Version To: 2.2
Patch Exists: YES
Related CWE: CVE-2018-9137
CPE: a:opmantek:open-audit
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Win7 Enterprise x86/Kali Linux 4.12 i686
2018
Open-AudIT 2.1 – CSV Macro Injection Vulnerability
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the OpenAudIT before 2.2 via a value that is mishandled in a CSV export. Login and Navigate to the any field which is having export feature and create an entry with @SUM(1+1)*cmd|' /C calc'!A0. When user logged in and exported user data then the CSV Formula gets executed and calculator will get popped in his machine.
Mitigation:
Update to latest version