Vulnerabilities > Apache > Ldap Studio

DATE CVE VULNERABILITY TITLE RISK
2016-04-11 CVE-2015-5349 Command Injection vulnerability in Apache Directory Studio and Ldap Studio
The CSV export in Apache LDAP Studio and Apache Directory Studio before 2.0.0-M10 does not properly escape field values, which might allow attackers to execute arbitrary commands by leveraging a crafted LDAP entry that is interpreted as a formula when imported into a spreadsheet.
local
low complexity
apache CWE-77
7.8