Medium severity4.8NVD Advisory· Published Sep 3, 2024· Updated Jun 17, 2026
CVE-2024-42901
CVE-2024-42901
Description
A CSV injection vulnerability in Lime Survey v6.5.12 allows attackers to execute arbitrary code via uploading a crafted CSV file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:limesurvey:limesurvey:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:limesurvey:limesurvey:*:*:*:*:*:*:*:*range: <=6.5.12
- (no CPE)range: =6.5.12
- Lime Survey/Lime Surveydescription
Patches
Vulnerability mechanics
References
2- github.com/LimeSurvey/LimeSurvey/pull/3884nvdPatch
- github.com/sysentr0py/CVEs/tree/main/CVE-2024-42901nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.