Описание
Dolibarr ERP and CRM contain XSS Vulnerability
Dolibarr CRM/ERP 10.0.3 allows viewimage.php?file= Stored XSS due to JavaScript execution in an SVG image for a profile picture.
Пакеты
Наименование
dolibarr/dolibarr
composer
Затронутые версииВерсия исправления
<= 10.0.3
Отсутствует
Связанные уязвимости
CVSS3: 5.4
ubuntu
около 6 лет назад
Dolibarr CRM/ERP 10.0.3 allows viewimage.php?file= Stored XSS due to JavaScript execution in an SVG image for a profile picture.
CVSS3: 5.4
nvd
около 6 лет назад
Dolibarr CRM/ERP 10.0.3 allows viewimage.php?file= Stored XSS due to JavaScript execution in an SVG image for a profile picture.
CVSS3: 5.4
debian
около 6 лет назад
Dolibarr CRM/ERP 10.0.3 allows viewimage.php?file= Stored XSS due to J ...