Описание
In htdocs/societe/card.php in Dolibarr 10.0.1, the value of the User-Agent HTTP header is copied into the HTML document as plain text between tags, leading to XSS.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| dolibarr | removed | package |
EPSS
Процентиль: 40%
0.00184
Низкий
Связанные уязвимости
CVSS3: 6.1
ubuntu
больше 6 лет назад
In htdocs/societe/card.php in Dolibarr 10.0.1, the value of the User-Agent HTTP header is copied into the HTML document as plain text between tags, leading to XSS.
CVSS3: 6.1
nvd
больше 6 лет назад
In htdocs/societe/card.php in Dolibarr 10.0.1, the value of the User-Agent HTTP header is copied into the HTML document as plain text between tags, leading to XSS.
EPSS
Процентиль: 40%
0.00184
Низкий