Vulnerabilities > CVE-2022-41675 - Improper Neutralization of Formula Elements in a CSV File vulnerability in Raidenmaild

047910
CVSS 8.0 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
raidenmaild
CWE-1236

Summary

A remote attacker with general user privilege can inject malicious code in the form content of Raiden MAILD Mail Server website. Other users export form content as CSV file can trigger arbitrary code execution and allow the attacker to perform arbitrary system operation or disrupt service on the user side.

Vulnerable Configurations

Part Description Count
Application
Raidenmaild
86