vulnerability
Alpine Linux: CVE-2018-11652: Improper Neutralization of Formula Elements in a CSV File
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
10 | (AV:N/AC:L/Au:N/C:C/I:C/A:C) | Jun 1, 2018 | Mar 26, 2024 | Oct 1, 2024 |
Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Jun 1, 2018
Added
Mar 26, 2024
Modified
Oct 1, 2024
Description
CSV Injection vulnerability in Nikto 2.1.6 and earlier allows remote attackers to inject arbitrary OS commands via the Server field in an HTTP response header, which is directly injected into a CSV report.
Solution
alpine-linux-upgrade-nikto

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.