CVE-2020-9016: XSS
Published Feb 16, 2020
·Updated
Dolibarr 11.0 allows XSS via the joinfiles, topic, or code parameter, or the HTTP Referer header.
Affected Software
1 affected component
dolibarr Dolibarr Erp\/crm=11.0.0
Event History
Feb 16, 2020
CVE Published
via MITRE·09:10 PM
Data Sourced
via MITRE·09:10 PM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for Dolibarr 11.0?
The vulnerability ID for Dolibarr 11.0 is CVE-2020-9016.
2
What is the severity of CVE-2020-9016?
The severity of CVE-2020-9016 is medium.
3
How does Dolibarr 11.0 allow XSS?
Dolibarr 11.0 allows XSS via the joinfiles, topic, or code parameter, or the HTTP Referer header.
4
Which version of Dolibarr is affected by CVE-2020-9016?
Dolibarr 11.0 is affected by CVE-2020-9016.
5
Is there a fix available for CVE-2020-9016?
Yes, a fix for CVE-2020-9016 is available.