Security Advisory

CVE-2021-47901

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-01-27 15:23:52
Last updated 2026-01-27 16:12:06
Assigner VulnCheck
State PUBLISHED

Description

Dirsearch 0.4.1 contains a CSV injection vulnerability when using the --csv-report flag that allows attackers to inject formulas through redirected endpoints. Attackers can craft malicious server redirects with comma-separated paths containing Excel formulas to manipulate the generated CSV report.