Security Advisory

CVE-2020-13239

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-05-20 14:57:38
Last updated 2024-08-04 12:11:19
Assigner mitre
State PUBLISHED

Description

The DMS/ECM module in Dolibarr 11.0.4 renders user-uploaded .html files in the browser when the attachment parameter is removed from the direct download link. This causes XSS.