Description
XSS was discovered in dotCMS 3.7.0, with an authenticated attack against the /myAccount addressID parameter.
Remediation
References
Related Vulnerabilities
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-0738)
PHP Resource Management Errors Vulnerability (CVE-2012-0830)
WordPress Plugin Ultimate GDPR & CCPA Compliance Toolkit for WordPress Security Bypass (2.4)
WordPress 4.3.x Multiple Vulnerabilities (4.3 - 4.3.31)
WordPress Plugin Limit Login Attempts Reloaded Security Bypass (2.17.3)