CVE-2019-19210

Dolibarr ERP/CRM before 10.0.3 allows XSS because uploaded HTML documents are served as text/html despite being renamed to .noexe files.
Configurations

Configuration 1

cpe:2.3:a:dolibarr:dolibarr:*:*:*:*:*:*:*:*

Information

Published : 2020-03-16 03:15

Updated : 2020-03-18 06:30


NVD link : CVE-2019-19210

Mitre link : CVE-2019-19210

Products Affected
No products.
CWE