Description XSS was discovered in dotCMS 3.7.0, with an authenticated attack against the /myAccount addressID parameter. Remediation References CVE-2017-5875 Related Vulnerabilities WebLogic CVE-2010-4453 Vulnerability (CVE-2010-4453) Jboss EAP CVE-2023-4061 Vulnerability (CVE-2023-4061) WebLogic CVE-2018-3250 Vulnerability (CVE-2018-3250) WordPress Plugin Custom Contact Forms Security Bypass (5.1.0.3) WordPress 'admin-ajax.php' SQL Injection Vulnerability (2.1.3) Severity Medium Classification CVE-2017-5875 CWE-707 CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N Tags Missing Update Known Vulnerabilities