Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:33578
HistoryJan 11, 2022 - 5:07 a.m.

Business Logic Errors

2022-01-1105:07:55
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
5
business logic errors
dolibarr
create function
negative price amounts
user input

EPSS

0.001

Percentile

24.8%

dolibarr/dolibarr is vulnerable to business logic errors. An attacker can exploit this flaw by providing a negative price amount to the create function in don.class.php as it does not properly check user input negative price amounts.

EPSS

0.001

Percentile

24.8%