ZeroHour

CVE-2016-1000222

CVSS 3.0
7.5 high
EPSS
1%p64
Published
()
Modified
Description

Logstash prior to version 2.1.2, the CSV output can be attacked via engineered input that will create malicious formulas in the CSV data.

Vendors
elastic
Products
logstash
Weakness
CWE-88
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.