Total vulnerabilities in the database
Cross Site Scripting vulnerability in Dolibarr ERP CRM v.17.0.1 and before allows a remote attacker to obtain sensitive information and execute arbitrary code via the REST API module, related to analyseVarsForSqlAndScriptsInjection and testSqlAndScriptInject.
Software | From | Fixed in |
---|---|---|
![]() |
- | 17.0.1 |
dolibarr / dolibarr_erp/crm | - | 17.0.1.x |