Lucene search

K
cvelistMitreCVELIST:CVE-2012-1225
HistoryFeb 21, 2012 - 12:00 a.m.

CVE-2012-1225

2012-02-2100:00:00
mitre
www.cve.org
3
sql injection
dolibarr cms
remote authenticated users
arbitrary sql commands
memberslist
adherents/fiche.php

AI Score

8.1

Confidence

Low

EPSS

0.001

Percentile

28.6%

Multiple SQL injection vulnerabilities in Dolibarr CMS 3.2.0 Alpha and earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) memberslist parameter (aka Member List) in list.php or (2) rowid parameter to adherents/fiche.php.

AI Score

8.1

Confidence

Low

EPSS

0.001

Percentile

28.6%

Related for CVELIST:CVE-2012-1225