phpLDAPadmin <= 1.2.3 contains a reflected cross-site scripting caused by unsanitized input in htdocs/entry_chooser.php via the form, element, rdn, or container parameter, letting attackers execute malicious scripts in victim browsers, exploit requires sending crafted input.
id: CVE-2017-11107
info:
name: phpLDAPadmin <= 1.2.3 - Reflected XSS
author: 0x_Akoko
severit
...