CVE-2011-4329: XSS
Multiple cross-site scripting (XSS) vulnerabilities in Dolibarr 3.1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the username parameter in a setup action to admin/company.php, or the PATHINFO to (2) admin/securityother.php, (3) admin/events.php, or (4) admin/user.php.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2011-4329?
CVE-2011-4329 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2011-4329?
To fix CVE-2011-4329, upgrade to the latest version of Dolibarr that addresses these cross-site scripting vulnerabilities.
What types of vulnerabilities are present in CVE-2011-4329?
CVE-2011-4329 contains multiple cross-site scripting (XSS) vulnerabilities that allow remote attackers to inject arbitrary web scripts.
Which versions of Dolibarr are affected by CVE-2011-4329?
CVE-2011-4329 affects Dolibarr version 3.1.0.
What are the affected components in CVE-2011-4329?
The affected components in CVE-2011-4329 include admin/company.php, admin/security_other.php, admin/events.php, and admin/user.php.