OpenAsset Digital Asset Management (DAM) 12.0.19 and earlier failed to implement access controls on /Stream/ProjectsCSV endpoint, allowing unauthenticated attackers to gain access to potentially sensitive project information stored by the application.
The product saves user-provided information into a Comma-Separated Value (CSV) file, but it does not neutralize or incorrectly neutralizes special elements that could be interpreted as a command when the file is opened by a spreadsheet product.
Link | Tags |
---|---|
http://openasset.com | vendor advisory |
http://seclists.org/fulldisclosure/2020/Dec/22 | mailing list exploit third party advisory |
http://packetstormsecurity.com/files/160457/OpenAsset-Digital-Asset-Management-Insecure-Direct-Object-Reference.html | exploit vdb entry third party advisory |
https://www.themissinglink.com.au/security-advisories-cve-2020-28861 | third party advisory |