Description
A CSV injection vulnerability in the /id_profiles endpoint of Avigilon ACM v7.10.0.20 allows attackers to execute arbitrary code via suuplying a crafted Excel file.
References
github.com/nikolas-ch/CVEs/tree/main/AvigilonACM_v7.10.0.20
github.com/...tree/main/AvigilonACM_v7.10.0.20/CSV_Injection
github.com/...ACM_v7.10.0.20/CSV_Injection/CSV_Injection.txt