Description
This script is vulnerable to Lotus Notes Formula Injection.
Lotus Notes Formula Injection is a vulnerability that allows an attacker to alter Lotus Notes Formula statements by manipulating the user input. Lotus Notes Formula Injection occurs when web applications accept user input that is directly placed into the Evaluate function from LotusScript. Consult References for more information about this vulnerability.
Remediation
Your script should filter metacharacters from user input.
References
Related Vulnerabilities
Palo Alto PAN-OS Management Interface Auth Bypass (CVE-2024-0012/CVE-2024-9474)
WordPress Plugin WebLibrarian SQL Injection (3.5.4)
WordPress Plugin WP RSS By Publishers Multiple SQL Injection Vulnerabilities (0.1)
WordPress Plugin Pinpoint Booking System-#1 WordPress Booking SQL Injection (2.9.9.2.8)