Server side cross-site scripting In ldap-account-manager
Description
A Cross-Site Scripting (XSS) vulnerability exists in LDAP Account Manager (LAM) Pro 3.6 in the filter parameter to cmd.php in an export and exporter_id action. and the filteruid parameter to list.php.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
debian 13 | 3.6-2 | ||
debian 13 | 1.2.2-3 | ||
debian 11 | 3.6-2 | ||
debian 12 | 3.6-2 | ||
debian 12 | 1.2.2-3 | ||
debian 14 | 1.2.2-3 |
Aliases
1. 2. 3. 4. 5.