IBM Content Navigator 2.0 and 3.0 is vulnerable to Comma Separated Value (CSV) Injection. An attacker could exploit this vulnerability to exploit other vulnerabilities in spreadsheet software. IBM X-Force ID: 137452.
| Software | From | Fixed in |
|---|---|---|
| ibm / content_navigator | 3.0.0 | 3.0.0.x |
| ibm / content_navigator | 3.0.1 | 3.0.1.x |
| ibm / content_navigator | 3.0.2 | 3.0.2.x |
| ibm / content_navigator | 3.0.3 | 3.0.3.x |
| ibm / content_navigator | 2.0.2.7 | 2.0.2.7.x |
| ibm / content_navigator | 2.0.2.8 | 2.0.2.8.x |