Apache Ranger
cpe:2.3:a:apache:ranger:*:*:*:*:*:*:*
- < 2.6.0
A vulnerability exists in the Export to CSV feature of Apache Ranger, in versions prior to 2.6.0, due to improper neutralization of formula elements. This issue could potentially be exploited by manipulating the exported content.
Exploitation of this vulnerability could lead to unintended execution of formulas when the CSV file is opened, potentially causing malicious actions to be performed automatically.
Users are advised to upgrade to Apache Ranger version 2.6.0 or later, which addresses this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.