A vulnerability, which was classified as problematic, has been found in l2c2technologies Koha up to 20180108. This issue affects some unknown processing of the file /cgi-bin/koha/opac-MARCdetail.pl. The manipulation of the argument biblionumber with the input 2"><TEST> leads to cross site scripting. The attack may be initiated remotely. The identifier of the patch is 950fc8e101886821879066b33e389a47fb0a9782. It is recommended to upgrade the affected component. The identifier VDB-261677 was assigned to this vulnerability.
Advisories
Source ID Title
EUVD EUVD EUVD-2018-13853 A vulnerability, which was classified as problematic, has been found in l2c2technologies Koha up to 20180108. This issue affects some unknown processing of the file /cgi-bin/koha/opac-MARCdetail.pl. The manipulation of the argument biblionumber with the input 2"><TEST> leads to cross site scripting. The attack may be initiated remotely. The identifier of the patch is 950fc8e101886821879066b33e389a47fb0a9782. It is recommended to upgrade the affected component. The identifier VDB-261677 was assigned to this vulnerability.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2024-08-05T12:33:48.492Z

Reserved: 2024-04-20T15:14:50.860Z

Link: CVE-2018-25101

cve-icon Vulnrichment

Updated: 2024-08-05T12:33:48.492Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-22T02:15:07.547

Modified: 2024-11-21T04:03:33.950

Link: CVE-2018-25101

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses