HomePentest-Tools.com Logo

Dolibarr <= 6.0.2 XSS Vulnerability CVE-2017-1000509

Severity
CVSSv3 Score
5.4
Vulnerability description

Dolibarr is prone to a cross-site scripting (XSS) vulnerability.

Risk description

Cross Site Scripting (XSS) exists in product details that can result in execution of javascript code. The payload is saved with no interference from the detector. When visiting the page later, the payload executes.

Recommendation

Update to version 7.0 or later.

Codename
Not available
Detectable with
Network Scanner
Scan engine
OpenVAS
Exploitable with Sniper
No
CVE Published
Feb 9, 2018
Detection added at
Software Type
Not available
Vendor
Not available
Product
Not available