What the vulnerability does
01Description
Improper Neutralization of Formula Elements in a CSV File vulnerability in Narola Infotech Solutions LLP Export Users Data Distinct.This issue affects Export Users Data Distinct: from n/a through 1.3.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:N/I:H/A:N
What the vulnerability does
Improper Neutralization of Formula Elements in a CSV File vulnerability in Narola Infotech Solutions LLP Export Users Data Distinct.This issue affects Export Users Data Distinct: from n/a through 1.3.
Explanation of Vulnerability in Simple Terms
Export Users Data Distinct versions up to 1.3 contain an integrity vulnerability that allows an authenticated user with low privileges to modify data through a network request. The attack requires user interaction and high attack complexity. The scope is changed, meaning the impact may extend beyond the vulnerable component itself.
What an attacker can do
Modify data on the site by tricking a user into visiting a malicious link or page.
Potential impact on your site
An authenticated user can alter site data if socially engineered to visit an attacker's page.
Conditions required to exploit
Attacker needs a low-privilege account; victim must click a link or visit a page the attacker controls.
Key dates
External resources
Related vulnerabilities