CVE-2020-35132 log
| Source |
|
| Severity | Medium |
| Remote | Yes |
| Type | Cross-site scripting |
| Description | A cross-site scripting issue has been discovered in phpLDAPadmin that allows users to store malicious values that may be executed by other users at a later time via get_request in lib/function.php. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-1346 | phpldapadmin | 1.2.6.2-2 | Medium | Vulnerable |
| References |
|---|
https://github.com/leenooks/phpLDAPadmin/issues/137 https://github.com/leenooks/phpLDAPadmin/issues/130 |