vulnerability

Alpine Linux: CVE-2018-11652: Improper Neutralization of Formula Elements in a CSV File

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Jun 1, 2018
Added
Mar 26, 2024
Modified
Oct 1, 2024

Description

CSV Injection vulnerability in Nikto 2.1.6 and earlier allows remote attackers to inject arbitrary OS commands via the Server field in an HTTP response header, which is directly injected into a CSV report.

Solution

alpine-linux-upgrade-nikto
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.