Описание
A reflected cross-site scripting (XSS) vulnerability in Dolibarr 11.0.3 allows remote attackers to inject arbitrary web script or HTML into public/notice.php (related to transphrase and transkey).
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| dolibarr | removed | package |
Примечания
https://github.com/Dolibarr/dolibarr/commit/22ca5e067189bffe8066df26df923a386f044c08
EPSS
Процентиль: 49%
0.00259
Низкий
Связанные уязвимости
CVSS3: 6.1
ubuntu
больше 5 лет назад
A reflected cross-site scripting (XSS) vulnerability in Dolibarr 11.0.3 allows remote attackers to inject arbitrary web script or HTML into public/notice.php (related to transphrase and transkey).
CVSS3: 6.1
nvd
больше 5 лет назад
A reflected cross-site scripting (XSS) vulnerability in Dolibarr 11.0.3 allows remote attackers to inject arbitrary web script or HTML into public/notice.php (related to transphrase and transkey).
CVSS3: 6.1
github
больше 3 лет назад
Dolibarr reflected cross-site scripting (XSS) vulnerability
EPSS
Процентиль: 49%
0.00259
Низкий