Vulnerabilities > CVE-2020-36531 - Improper Neutralization of Formula Elements in a CSV File vulnerability in IBM Sevone Network Performance Management

047910
CVSS 6.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
SINGLE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
ibm
CWE-1236

Summary

A vulnerability, which was classified as critical, has been found in SevOne Network Management System up to 5.7.2.22. This issue affects the Device Manager Page. An injection leads to privilege escalation. The attack may be initiated remotely.

Vulnerable Configurations

Part Description Count
Application
Ibm
1