VYPR
Medium severity6.1OSV Advisory· Published Mar 27, 2018· Updated Jun 17, 2026

CVE-2018-8763

CVE-2018-8763

Description

Roland Gruber Softwareentwicklung LDAP Account Manager before 6.3 has XSS via the dn parameter to the templates/3rdParty/pla/htdocs/cmd.php URI or the template parameter to the templates/3rdParty/pla/htdocs/cmd.php?cmd=rename_form URI.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • Range: 8.5, 8.6, 8.6.RC1, …
  • cpe:2.3:a:ldap-account-manager:ldap_account_manager:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:ldap-account-manager:ldap_account_manager:*:*:*:*:*:*:*:*range: <6.3
    • (no CPE)range: <6.3
  • Debian/linux3 versions
    cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
    • cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
    • cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.