SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Dolibarr ERP CRM card.php XSS

Category: WEB-ATTACKS      

Dolibarr ERP and CRM 13.0.2 allows XSS via object details, as demonstrated by > and < characters in the onpointermove attribute of a BODY element to the user-management feature.

References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1005


Relevant Information