ZeroHour

CVE-2018-10094

PoC ×3
CVSS 3.0
9.8 critical
EPSS
71%p99
Published
()
Modified
Description

SQL injection vulnerability in Dolibarr before 7.0.2 allows remote attackers to execute arbitrary SQL commands via vectors involving integer parameters without quotes.

Vendors
dolibarr
Products
dolibarr
Weakness
CWE-89
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.