Vulnerabilities > CVE-2020-28845 - Improper Neutralization of Formula Elements in a CSV File vulnerability in Netskope 75.0

047910
CVSS 9.3 - CRITICAL
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
netskope
CWE-1236
critical

Summary

A CSV injection vulnerability in the Admin portal for Netskope 75.0 allows an unauthenticated user to inject malicious payload in admin's portal thus leads to compromise admin's system.

Vulnerable Configurations

Part Description Count
Application
Netskope
1