CVE-2017-1000509: XSS
Published Feb 9, 2018
·Updated
Dolibarr version 6.0.2 contains a Cross Site Scripting (XSS) vulnerability in Product details that can result in execution of javascript code.
Affected Software
2 affected componentsFixes available
composer/dolibarr/dolibarr<7.0.0
7.0.0
dolibarr Dolibarr Erp\/crm=6.0.2
Event History
Feb 9, 2018
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
May 14, 2022
Advisory Published
03:41 AM
Frequently Asked Questions
1
What is the severity of CVE-2017-1000509?
CVE-2017-1000509 is classified as a medium severity vulnerability due to its Cross Site Scripting (XSS) risk.
2
How do I fix CVE-2017-1000509?
To fix CVE-2017-1000509, upgrade Dolibarr to version 6.0.3 or later where the vulnerability has been addressed.
3
Who is affected by CVE-2017-1000509?
CVE-2017-1000509 affects users running Dolibarr version 6.0.2.
4
What type of vulnerability is CVE-2017-1000509?
CVE-2017-1000509 is a Cross Site Scripting (XSS) vulnerability that allows for the execution of malicious JavaScript code.
5
What can be exploited in CVE-2017-1000509?
CVE-2017-1000509 can be exploited to inject and execute JavaScript code in the context of the user's browser.