A Cross Site Scripting (XSS) vulnerability exists in Dolibarr before 14.0.3 via the ticket creation flow. Exploitation requires that an admin copies the payload into a box.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-12-15T06:32:03

Updated: 2021-12-15T06:32:03

Reserved: 2021-10-11T00:00:00


Link: CVE-2021-42220

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-12-15T07:15:07.357

Modified: 2021-12-15T21:29:34.020


Link: CVE-2021-42220

JSON object: View

cve-icon Redhat Information

No data.

CWE