CVE-2020-7996: XSS
Published Jan 26, 2020
·Updated
htdocs/user/passwordforgotten.php in Dolibarr 10.0.6 allows XSS via the Referer HTTP header.
Affected Software
1 affected component
dolibarr Dolibarr Erp\/crm=10.0.6
Event History
Jan 26, 2020
CVE Published
via MITRE·10:44 PM
Data Sourced
via MITRE·10:44 PM
Description
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-7996.
2
What is the severity of CVE-2020-7996?
The severity of CVE-2020-7996 is medium, with a severity value of 6.1.
3
How does CVE-2020-7996 affect Dolibarr?
CVE-2020-7996 affects Dolibarr version 10.0.6.
4
What is the impact of CVE-2020-7996?
CVE-2020-7996 allows cross-site scripting (XSS) attacks via the Referer HTTP header.
5
Is there a fix available for CVE-2020-7996?
Yes, you can find more information about the fix for CVE-2020-7996 in the provided references.