This issue affects DoXBASE: through 27082026.
NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 27 Aug 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in BilPark Informatics Technologies Industry and Trade Inc. DoXBASE allows Cross Zone Scripting. This issue affects DoXBASE: through 27082026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Reflected XSS in BilPark's DoXBASE | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: TR-CERT
Published:
Updated: 2026-08-27T19:42:02.260Z
Reserved: 2026-04-07T13:37:28.745Z
Link: CVE-2026-5738
No data.
Status : Deferred
Published: 2026-08-27T17:18:58.570
Modified: 2026-08-28T15:28:32.763
Link: CVE-2026-5738
No data.
OpenCVE Enrichment
Updated: 2026-08-27T17:45:04Z
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')