Medium severity5.4NVD Advisory· Published Apr 16, 2020· Updated Jun 17, 2026
CVE-2020-11823
CVE-2020-11823
Description
In Dolibarr 10.0.6, if USER_LOGIN_FAILED is active, there is a stored XSS vulnerability on the admin tools --> audit page. This may lead to stealing of the admin account.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Dolibarr/Dolibarrdescription
- osv-coords2 versions
>= 10.0.6, <= 10.0.6+ 1 more
- (no CPE)range: >= 10.0.6, <= 10.0.6
- (no CPE)
Patches
Vulnerability mechanics
References
3- fatihhcelik.blogspot.com/2020/04/dolibarr-stored-xss.htmlnvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-q938-82fw-wfcfghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2020-11823ghsaADVISORY
News mentions
0No linked articles in our index yet.