Security Advisory

CVE-2015-5349

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-04-11 21:00:00
Last updated 2024-08-06 06:41:09
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

The CSV export in Apache LDAP Studio and Apache Directory Studio before 2.0.0-M10 does not properly escape field values, which might allow attackers to execute arbitrary commands by leveraging a crafted LDAP entry that is interpreted as a formula when imported into a spreadsheet.