Looking for the vulnerability index of Invicti's legacy products?
Dolibarr Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-7887) - Vulnerability Database

Dolibarr Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-7887)

Description

Dolibarr ERP/CRM 4.0.4 has XSS in doli/societe/list.php via the sall parameter.

References