Vulnerabilities > Improper Neutralization of Formula Elements in a CSV File

DATE CVE VULNERABILITY TITLE RISK
2023-11-07 CVE-2023-23796 Improper Neutralization of Formula Elements in a CSV File vulnerability in Web-Settler Form Builder
Improper Neutralization of Formula Elements in a CSV File vulnerability in Muneeb Form Builder | Create Responsive Contact Forms.This issue affects Form Builder | Create Responsive Contact Forms: from n/a through 1.9.9.0.
network
low complexity
web-settler CWE-1236
critical
9.8
2023-11-07 CVE-2023-25983 Improper Neutralization of Formula Elements in a CSV File vulnerability in Liquidweb KB Support
Improper Neutralization of Formula Elements in a CSV File vulnerability in WPOmnia KB Support.This issue affects KB Support: from n/a through 1.5.84.
network
low complexity
liquidweb CWE-1236
8.8
2023-11-07 CVE-2023-36527 Improper Neutralization of Formula Elements in a CSV File vulnerability in Bestwebsoft Post to CSV
Improper Neutralization of Formula Elements in a CSV File vulnerability in BestWebSoft Post to CSV by BestWebSoft.This issue affects Post to CSV by BestWebSoft: from n/a through 1.4.0.
network
low complexity
bestwebsoft CWE-1236
8.8
2023-11-07 CVE-2022-45350 Improper Neutralization of Formula Elements in a CSV File vulnerability in Simple-History Simple History
Improper Neutralization of Formula Elements in a CSV File vulnerability in Pär Thernström Simple History – user activity log, audit tool.This issue affects Simple History – user activity log, audit tool: from n/a through 3.3.1.
network
low complexity
simple-history CWE-1236
8.8
2023-11-07 CVE-2022-47442 Improper Neutralization of Formula Elements in a CSV File vulnerability in Ayecode Userswp
Improper Neutralization of Formula Elements in a CSV File vulnerability in AyeCode Ltd UsersWP.This issue affects UsersWP: from n/a through 1.2.3.9.
network
low complexity
ayecode CWE-1236
8.8
2023-10-05 CVE-2023-43071 Improper Neutralization of Formula Elements in a CSV File vulnerability in Dell Smartfabric Storage Software 1.0.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains possible vulnerabilities for HTML injection or CVS formula injection which might escalate to cross-site scripting attacks in HTML pages in the GUI.
network
low complexity
dell CWE-1236
5.4
2023-09-06 CVE-2020-10131 Improper Neutralization of Formula Elements in a CSV File vulnerability in Searchblox
SearchBlox before Version 9.2.1 is vulnerable to CSV macro injection in "Featured Results" parameter.
network
low complexity
searchblox CWE-1236
critical
9.8
2023-08-28 CVE-2023-22877 Improper Neutralization of Formula Elements in a CSV File vulnerability in IBM Infosphere Information Server 11.7.1
IBM InfoSphere Information Server 11.7 is potentially vulnerable to CSV Injection.
network
low complexity
ibm CWE-1236
8.8
2023-08-17 CVE-2023-38843 Improper Neutralization of Formula Elements in a CSV File vulnerability in Atlos 1.0
An issue in Atlos v.1.0 allows an authenticated attacker to execute arbitrary code via a crafted payload into the description field in the incident function.
network
low complexity
atlos CWE-1236
8.0
2023-07-31 CVE-2023-4006 Improper Neutralization of Formula Elements in a CSV File vulnerability in PHPmyfaq
Improper Neutralization of Formula Elements in a CSV File in GitHub repository thorsten/phpmyfaq prior to 3.1.16.
network
low complexity
phpmyfaq CWE-1236
critical
9.8