Логотип exploitDog
bind:CVE-2020-13240
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-13240

Количество 4

Количество 4

ubuntu логотип

CVE-2020-13240

больше 5 лет назад

The DMS/ECM module in Dolibarr 11.0.4 allows users with the 'Setup documents directories' permission to rename uploaded files to have insecure file extensions. This bypasses the .noexe protection mechanism against XSS.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2020-13240

больше 5 лет назад

The DMS/ECM module in Dolibarr 11.0.4 allows users with the 'Setup documents directories' permission to rename uploaded files to have insecure file extensions. This bypasses the .noexe protection mechanism against XSS.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2020-13240

больше 5 лет назад

The DMS/ECM module in Dolibarr 11.0.4 allows users with the 'Setup doc ...

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-f848-r5g6-6gpf

больше 3 лет назад

Dolibarr Stored Cross-site Scripting

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2020-13240

The DMS/ECM module in Dolibarr 11.0.4 allows users with the 'Setup documents directories' permission to rename uploaded files to have insecure file extensions. This bypasses the .noexe protection mechanism against XSS.

CVSS3: 5.4
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13240

The DMS/ECM module in Dolibarr 11.0.4 allows users with the 'Setup documents directories' permission to rename uploaded files to have insecure file extensions. This bypasses the .noexe protection mechanism against XSS.

CVSS3: 5.4
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-13240

The DMS/ECM module in Dolibarr 11.0.4 allows users with the 'Setup doc ...

CVSS3: 5.4
0%
Низкий
больше 5 лет назад
github логотип
GHSA-f848-r5g6-6gpf

Dolibarr Stored Cross-site Scripting

CVSS3: 5.4
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу