EPSS
Percentile
46.8%
dolibarr/dolibarr is vulnerable to SQL Injection attacks. The application does not properly sanitize the statut_buy parameter in product/card.php, allowing a malicious user to inject and execute arbitrary SQL commands.
statut_buy
product/card.php
github.com/Dolibarr/dolibarr/commit/36402c22eef49d60edd73a2f312f8e28fe0bd1cb