Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-5314

Опубликовано: 24 мая 2024
Источник: debian
EPSS Низкий

Описание

Vulnerabilities in Dolibarr ERP - CRM that affect version 9.0.1 and allow SQL injection. These vulnerabilities could allow a remote attacker to send a specially crafted SQL query to the system and retrieve all the information stored in the database through the parameters sortorder y sortfield in /dolibarr/admin/dict.php.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dolibarrremovedpackage

EPSS

Процентиль: 43%
0.00208
Низкий

Связанные уязвимости

CVSS3: 9.1
ubuntu
больше 1 года назад

Vulnerabilities in Dolibarr ERP - CRM that affect version 9.0.1 and allow SQL injection. These vulnerabilities could allow a remote attacker to send a specially crafted SQL query to the system and retrieve all the information stored in the database through the parameters sortorder y sortfield in /dolibarr/admin/dict.php.

CVSS3: 9.1
nvd
больше 1 года назад

Vulnerabilities in Dolibarr ERP - CRM that affect version 9.0.1 and allow SQL injection. These vulnerabilities could allow a remote attacker to send a specially crafted SQL query to the system and retrieve all the information stored in the database through the parameters sortorder y sortfield in /dolibarr/admin/dict.php.

CVSS3: 9.1
github
больше 1 года назад

Dolibarr vulnerable to SQL Injection

EPSS

Процентиль: 43%
0.00208
Низкий