Formula Injection ÔÇô A vulnerability affecting applications that export spreadsheet files

Many applications use CSV (.xls,.xlsx,.ods,.csv) to manage and keep track of application data as it is convenient and comprehensive. It is also user friendly in the sense that it can be edited at will, can be updated easily and can be used to perform other functions (Mathematical as well as logical). The use of excel to perform mathematical operations has its own set of pros and cons. Pros, as we all know, excel can be used to perform mathematical operations of large numbers.
Authored by Shwetabh Suman
TCS Enterprise Security and Risk Management
