CVE-2020-14475

Cross-site Scripting in packagist/dolibarr/dolibarr

Identifiers

CVE-2020-14475

Package Slug

packagist/dolibarr/dolibarr

Vulnerability

Cross-site Scripting

Description

A reflected cross-site scripting (XSS) vulnerability in Dolibarr allows remote attackers to inject arbitrary web script or HTML into public/notice.php.

Affected Versions

Version 11.0.3

Solution

Upgrade to version 11.0.4 or above.

Last Modified

2020-06-25

source