CVE-2020-28845

HIGH

Netskope 75.0 - Code Injection

Title source: llm
STIX 2.1

Description

A CSV injection vulnerability in the Admin portal for Netskope 75.0 allows an unauthenticated user to inject malicious payload in admin's portal thus leads to compromise admin's system.

Scores

CVSS v3 7.8
EPSS 0.0107
EPSS Percentile 77.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-1236
Status published
Products (1)
netskope/netskope 75.0
Published Nov 20, 2020
Tracked Since Feb 18, 2026