CVE-2017-1000039: Input Validation
Published Jul 13, 2017
·Updated
Framadate version 1.0 is vulnerable to Formula Injection in the CSV Export resulting possible Information Disclosure and Code Execution
Affected Software
1 affected component
Framasoft Framadate=1.0
Event History
Jul 13, 2017
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-1000039?
CVE-2017-1000039 has a medium severity level due to its potential for information disclosure and code execution.
2
How do I fix CVE-2017-1000039?
To fix CVE-2017-1000039, upgrade Framadate to a version that addresses the formula injection vulnerability.
3
What systems are affected by CVE-2017-1000039?
CVE-2017-1000039 specifically affects Framadate version 1.0.
4
What is the impact of CVE-2017-1000039?
The impact of CVE-2017-1000039 includes potential information disclosure and unauthorized code execution.
5
Is there a workaround for CVE-2017-1000039?
There are no known workarounds for CVE-2017-1000039 other than upgrading to a safe version.