Security Advisory

CVE-2023-48029

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-11-17 00:00:00
Last updated 2025-09-29 13:44:13
Assigner mitre
State PUBLISHED

Description

Corebos 8.0 and below is vulnerable to CSV Injection. An attacker with low privileges can inject a malicious command into a table. This vulnerability is exploited when an administrator visits the user management section, exports the data to a CSV file, and then opens it, leading to the execution of the malicious payload on the administrators computer.