Cross-Site Scripting Vulnerability in OpenDocMan by OpenDocMan
CVE-2015-5625

Currently unrated

Key Information:

Vendor

Opendocman

Vendor
CVE Published:
7 September 2015

What is CVE-2015-5625?

The OpenDocMan software prior to version 1.3.4 is prone to a cross-site scripting (XSS) vulnerability that allows remote attackers to inject arbitrary web scripts or HTML through the redirection parameter. This exploitation can compromise user data and session security, highlighting the importance of upgrading to the latest software version to mitigate potential threats.

References

EPSS Score

22% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.