Cross-site scripting (XSS) vulnerability in odm-init.php in OpenDocMan prior to 1.2.7.3 allows remote authenticated users to inject arbitrary web script or HTML via the file name of an uploaded file.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
opendocman opendocman 1.2.7.1 |
||
opendocman opendocman 1.2.6.3 |
||
opendocman opendocman 1.2.6.2 |
||
opendocman opendocman 1.2.6.8 |
||
opendocman opendocman 1.2.6.7 |
||
opendocman opendocman 1.2.6.6 |
||
opendocman opendocman |
||
opendocman opendocman 1.2.7 |
||
opendocman opendocman 1.2.6.5 |