CVE-2018-1366: IBM Content Navigator

High severity, CVSS 7.8. EPSS: 0.9% chance of exploitation in the next 30 days.

IBM Content Navigator 2.0 and 3.0 is vulnerable to Comma Separated Value (CSV) Injection. An attacker could exploit this vulnerability to exploit other vulnerabilities in spreadsheet software. IBM X-Force ID: 137452.

Affected products

  • IBM Content Navigator: version 2.0.2.7 only; version 2.0.2.8 only; version 3.0.0 only; version 3.0.1 only; version 3.0.2 only; version 3.0.3 only

Published 2018-02-07. Last modified 2026-06-17.