Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-16685

Опубликовано: 27 сент. 2019
Источник: debian
EPSS Низкий

Описание

Dolibarr 9.0.5 has stored XSS vulnerability via a User Group Description section to card.php. A user with the "Create/modify other users, groups and permissions" privilege can inject script and can also achieve privilege escalation.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dolibarrremovedpackage

EPSS

Процентиль: 37%
0.00156
Низкий

Связанные уязвимости

CVSS3: 5.4
ubuntu
больше 6 лет назад

Dolibarr 9.0.5 has stored XSS vulnerability via a User Group Description section to card.php. A user with the "Create/modify other users, groups and permissions" privilege can inject script and can also achieve privilege escalation.

CVSS3: 5.4
nvd
больше 6 лет назад

Dolibarr 9.0.5 has stored XSS vulnerability via a User Group Description section to card.php. A user with the "Create/modify other users, groups and permissions" privilege can inject script and can also achieve privilege escalation.

CVSS3: 5.4
github
больше 3 лет назад

Dolibarr stored Cross-site Scripting vulnerability

EPSS

Процентиль: 37%
0.00156
Низкий