Lucene search

K
osvGoogleOSV:GHSA-2GC5-3H3P-8VPF
HistoryMay 14, 2022 - 1:42 a.m.

Dolibarr reflected cross-site scripting (XSS) vulnerability

2022-05-1401:42:49
Google
osv.dev
5
dolibarr
vulnerability
xss
web script
html
notice.php
remote attackers

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

45.3%

A reflected cross-site scripting (XSS) vulnerability in Dolibarr 8.0.2 allows remote attackers to inject arbitrary web script or HTML via the transphrase parameter to public/notice.php.

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

45.3%