Lucene search

K
osvGoogleOSV:GHSA-78HJ-952Q-99RW
HistoryMay 14, 2022 - 1:42 a.m.

Dolibarr error-based SQL injection vulnerability in product/card.php

2022-05-1401:42:07
Google
osv.dev
6
dolibarr
sql injection
product/card.php
version 8.0.2
remote authenticated users
arbitrary sql commands

AI Score

8.1

Confidence

Low

EPSS

0.001

Percentile

44.5%

An error-based SQL injection vulnerability in product/card.php in Dolibarr version 8.0.2 allows remote authenticated users to execute arbitrary SQL commands via the desiredstock parameter.

AI Score

8.1

Confidence

Low

EPSS

0.001

Percentile

44.5%