Search CVE reports
21 – 30 of 121 results
CVE-2022-30875
Low priorityDolibarr 12.0.5 is vulnerable to Cross Site Scripting (XSS) via Sql Error Page.
1 affected packages
dolibarr
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
dolibarr | — | — | — | — | — |
CVE-2021-37517
Medium priorityAn Access Control vulnerability exists in Dolibarr ERP/CRM 13.0.2, fixed version is 14.0.0,in the forgot-password function becuase the application allows email addresses as usernames, which can cause a Denial of Service.
1 affected packages
dolibarr
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
dolibarr | — | — | — | — | Vulnerable |
CVE-2021-36625
Medium priorityAn SQL Injection vulnerability exists in Dolibarr ERP/CRM 13.0.2 (fixed version is 14.0.0) via a POST request to the country_id parameter in an UPDATE statement.
1 affected packages
dolibarr
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
dolibarr | — | — | — | — | Vulnerable |
CVE-2022-0819
Medium priorityCode Injection in GitHub repository dolibarr/dolibarr prior to 15.0.1.
1 affected packages
dolibarr
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
dolibarr | — | — | — | — | Vulnerable |
CVE-2022-0746
Low priorityBusiness Logic Errors in GitHub repository dolibarr/dolibarr prior to 16.0.
1 affected packages
dolibarr
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
dolibarr | — | — | — | — | Vulnerable |
CVE-2022-0731
Low priorityImproper Access Control (IDOR) in GitHub repository dolibarr/dolibarr prior to 16.0.
1 affected packages
dolibarr
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
dolibarr | — | — | — | — | Vulnerable |
CVE-2022-0414
Low priorityImproper Validation of Specified Quantity in Input in Packagist dolibarr/dolibarr prior to 16.0.
1 affected packages
dolibarr
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
dolibarr | — | — | — | — | Vulnerable |
CVE-2022-0224
Medium prioritydolibarr is vulnerable to Improper Neutralization of Special Elements used in an SQL Command
1 affected packages
dolibarr
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
dolibarr | Not in release | Not in release | Not in release | Not in release | Vulnerable |
CVE-2022-0174
Medium priorityImproper Validation of Specified Quantity in Input vulnerability in dolibarr dolibarr/dolibarr.
1 affected packages
dolibarr
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
dolibarr | Not in release | Not in release | Not in release | Not in release | Vulnerable |
CVE-2022-22293
Medium priorityadmin/limits.php in Dolibarr 7.0.2 allows HTML injection, as demonstrated by the MAIN_MAX_DECIMALS_TOT parameter.
1 affected packages
dolibarr
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
dolibarr | — | — | — | — | Vulnerable |