Total vulnerabilities in the database
admin/limits.php in Dolibarr 7.0.2 allows HTML injection, as demonstrated by the MAIN_MAX_DECIMALS_TOT parameter.
Software | From | Fixed in |
---|---|---|
dolibarr / dolibarr_erp/crm | 7.0.2 | 7.0.2.x |
![]() |
- | 13.0.0 |