Description
A reflected cross-site scripting (XSS) vulnerability in Dolibarr 8.0.2 allows remote attackers to inject arbitrary web script or HTML via the transphrase parameter to public/notice.php.
Remediation
References
Related Vulnerabilities
WordPress Plugin Podcast Importer SecondLine SQL Injection (1.3.7)
WordPress Plugin Image Intense SQL Injection (3.2.5)
PHP Out-of-bounds Read Vulnerability (CVE-2019-11035)
Grafana Missing Authentication for Critical Function Vulnerability (CVE-2019-15043)
WordPress Plugin Hot Files:File Sharing and Download Manager Cross-Site Scripting (1.0.0)