"The Absurdly Underestimated Dangers of CSV Injection"
ROTFL last edited by
dLeon last edited by
I scratch my head for this.
The linked post, show the attack seem only possible if we use spreadsheet program.
Other than that, probably happen only to program that try to interpret the values after import/entry. I could only think spreadsheet program.
And by all mean, just don't use spreadsheet to edit important CSV; like the one you will import to your server mechanism.
Verbatim CSV editors available, exclude plain text editor.
LOL. Typical MS Excel crap vulnerability.
Does not work in Libreoffice Calc.