Description
A stored cross-site scripting (XSS) vulnerability in Dolibarr 8.0.2 allows remote authenticated users to inject arbitrary web script or HTML via the "address" (POST) or "town" (POST) parameter to adherents/type.php.
Remediation
References
Related Vulnerabilities
WordPress Plugin WPtouch 'wptouch_redirect' Parameter URI Redirection (1.9.32)
Dotclear Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-1584)
Oracle JRE CVE-2023-22045 Vulnerability (CVE-2023-22045)
Dolibarr Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2024-29477)
Sqlite Missing Release of Memory after Effective Lifetime Vulnerability (CVE-2021-45346)