Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:34926
HistoryApr 01, 2022 - 11:10 a.m.

SQL Injection

2022-04-0111:10:27
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
16
sql injection
dolibarr
update statement
country_id parameter

EPSS

0.001

Percentile

37.0%

dolibarr/dolibarr is vulnerable to SQL Injection attacks. The vulnerability exists due to lack of sanitization in the UPDATE statement which allows a malicious attacker to execute arbitrary SQL queries on country_id parameter.

EPSS

0.001

Percentile

37.0%