Lucene search

K
osvGoogleOSV:GHSA-24Q2-6X37-CGCX
HistoryMay 14, 2022 - 3:00 a.m.

Dolibarr SQL injection vulnerability in product/card.php

2022-05-1403:00:59
Google
osv.dev
8
sql injection
dolibarr erp/crm
version 7.0.3
remote attackers
arbitrary sql commands
status_batch parameter
software

AI Score

8.6

Confidence

Low

EPSS

0.001

Percentile

46.8%

SQL injection vulnerability in product/card.php in Dolibarr ERP/CRM version 7.0.3 allows remote attackers to execute arbitrary SQL commands via the status_batch parameter.

AI Score

8.6

Confidence

Low

EPSS

0.001

Percentile

46.8%