Vulnerabilities
Vulnerable Software
A reflected cross-site scripting (XSS) vulnerability in Dolibarr 8.0.2 allows remote attackers to inject arbitrary web script or HTML via the transphrase parameter to public/notice.php.
CVSS Score
6.1
EPSS Score
0.017
Published
2019-01-03
An error-based SQL injection vulnerability in product/card.php in Dolibarr version 8.0.2 allows remote authenticated users to execute arbitrary SQL commands via the desiredstock parameter.
CVSS Score
8.8
EPSS Score
0.018
Published
2019-01-03
A stored cross-site scripting (XSS) vulnerability in Dolibarr 8.0.2 allows remote authenticated users to inject arbitrary web script or HTML via the "address" (POST) or "town" (POST) parameter to user/card.php.
CVSS Score
5.4
EPSS Score
0.014
Published
2019-01-03
SQL injection vulnerability in user/card.php in Dolibarr version 8.0.2 allows remote authenticated users to execute arbitrary SQL commands via the employee parameter.
CVSS Score
8.8
EPSS Score
0.019
Published
2019-01-03
A stored cross-site scripting (XSS) vulnerability in Dolibarr 8.0.2 allows remote authenticated users to inject arbitrary web script or HTML via the "address" (POST) or "town" (POST) parameter to adherents/type.php.
CVSS Score
5.4
EPSS Score
0.013
Published
2019-01-03


Contact Us

Shodan ® - All rights reserved