Security Advisory

CVE-2021-33618

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-11-10 22:40:41
Last updated 2024-08-03 23:58:21
Assigner mitre
State PUBLISHED

Description

Dolibarr ERP and CRM 13.0.2 allows XSS via object details, as demonstrated by > and < characters in the onpointermove attribute of a BODY element to the user-management feature.