CVE-2021-46363
Published
CVSS v3
7.8
HIGH
CVSS v2
9.3
HIGH
Affected
1
PROJECT
Description
An issue in the Export function of Magnolia v6.2.3 and below allows attackers to perform Formula Injection attacks via crafted CSV/XLS files. These formulas may result in arbitrary code execution on a victim's computer when opening the exported files with Microsoft Excel.