Количество 4
Количество 4
CVE-2020-13239
The DMS/ECM module in Dolibarr 11.0.4 renders user-uploaded .html files in the browser when the attachment parameter is removed from the direct download link. This causes XSS.
CVE-2020-13239
The DMS/ECM module in Dolibarr 11.0.4 renders user-uploaded .html files in the browser when the attachment parameter is removed from the direct download link. This causes XSS.
CVE-2020-13239
The DMS/ECM module in Dolibarr 11.0.4 renders user-uploaded .html file ...
GHSA-fvf9-2hjp-w936
Dolibarr Stored Cross-site Scripting via file upload
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2020-13239 The DMS/ECM module in Dolibarr 11.0.4 renders user-uploaded .html files in the browser when the attachment parameter is removed from the direct download link. This causes XSS. | CVSS3: 5.4 | 0% Низкий | больше 5 лет назад | |
CVE-2020-13239 The DMS/ECM module in Dolibarr 11.0.4 renders user-uploaded .html files in the browser when the attachment parameter is removed from the direct download link. This causes XSS. | CVSS3: 5.4 | 0% Низкий | больше 5 лет назад | |
CVE-2020-13239 The DMS/ECM module in Dolibarr 11.0.4 renders user-uploaded .html file ... | CVSS3: 5.4 | 0% Низкий | больше 5 лет назад | |
GHSA-fvf9-2hjp-w936 Dolibarr Stored Cross-site Scripting via file upload | CVSS3: 5.4 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу