Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Pentestrox

#50107of 53,624
4.8Total CVSS
Vulnerabilities · 1
PT-2026-45989
4.8
2026-06-03
Undefined · Undefined · CVE-2026-36460
Dovestones Softwares ADPhonebook before v4.0.1.1 is vulnerable to a Cross Site Scripting vulnerability. The /Admin/Save API allows an authenticated admin user to store malicious JavaScript payloads in multiple configuration sections without proper input validation or output encoding.