First published: Mon Mar 16 2020(Updated: )
Dolibarr ERP/CRM before 10.0.3 has an Insufficient Filtering issue that can lead to user/card.php XSS.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
composer/dolibarr/dolibarr | <10.0.3 | 10.0.3 |
Dolibarr Dolibarr | >=3.0.0<10.0.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability is an Insufficient Filtering issue that can lead to XSS in user/card.php.
The severity of the vulnerability is medium with a CVSS score of 6.1.
Dolibarr ERP/CRM versions up to 10.0.3 are affected, as well as versions between 3.0.0 and 10.0.4.
To fix the vulnerability, update Dolibarr ERP/CRM to version 10.0.3 or higher.
You can find more information about CVE-2019-19211 on the NVD, HEROLAB, and Dolibarr websites.