Lucene search

K
osvGoogleOSV:GHSA-P2FM-8RHJ-58FR
HistoryMay 14, 2022 - 3:20 a.m.

Dolibarr Cross-site scripting (XSS) vulnerability

2022-05-1403:20:23
Google
osv.dev
5
dolibarr
cross-site scripting
vulnerability
remote attackers
web script
html
foruserlogin parameter
carte.php
software

AI Score

5.7

Confidence

High

EPSS

0.953

Percentile

99.4%

Cross-site scripting (XSS) vulnerability in Dolibarr before 7.0.2 allows remote attackers to inject arbitrary web script or HTML via the foruserlogin parameter to adherents/cartes/carte.php.

AI Score

5.7

Confidence

High

EPSS

0.953

Percentile

99.4%