Description
Cross-site scripting (XSS) vulnerability in Dolibarr before 7.0.2 allows remote attackers to inject arbitrary web script or HTML via the foruserlogin parameter to adherents/cartes/carte.php.
Remediation
References
Related Vulnerabilities
Jenkins Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2015-5318)
Jetty Session Fixation Vulnerability (CVE-2018-12538)
WordPress Plugin Ultimate Addons for Elementor Security Bypass (1.20.0)
Oracle Database Server CVE-2006-5336 Vulnerability (CVE-2006-5336)
WordPress Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-14028)