Description
Rukovoditel v3.2.1 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability in the component /rukovoditel/index.php?module=users/login. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted GET request.
Remediation
References
Related Vulnerabilities
e107 Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2018-17081)
Django URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2017-7233)
MySQL CVE-2022-21288 Vulnerability (CVE-2022-21288)
Oracle Database Server CVE-2007-3858 Vulnerability (CVE-2007-3858)
Seo Panel Server-Side Request Forgery (SSRF) Vulnerability (CVE-2025-29451)