Vulnerability index

Browse CVEs

128 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Dolibarr Erp\/crm MEDIUM 6.1
CVE-2017-7887

Dolibarr ERP/CRM 4.0.4 has XSS in doli/societe/list.php via the sall parameter.

No fix yet
Fix from $1,600 2017-05-10
Dolibarr MEDIUM 5.4
CVE-2016-1912

Multiple cross-site scripting (XSS) vulnerabilities in Dolibarr ERP/CRM 3.8.3 allow remote authenticated users to inject arbitrary web script or HTML…

Fix: after 3.8.2
Fix from $1,600 2016-01-15
Dolibarr MEDIUM 6.1
CVE-2015-8685

Multiple cross-site scripting (XSS) vulnerabilities in Dolibarr ERP/CRM 3.8.3 and earlier allow remote attackers to inject arbitrary web script or HT…

Fix: after 3.8.2
Fix from $1,600 2016-01-15
Dolibarr MEDIUM 6.5
CVE-2014-7137

Multiple SQL injection vulnerabilities in Dolibarr ERP/CRM before 3.6.1 allow remote authenticated users to execute arbitrary SQL commands via the (1…

Fix: after 3.6.0
Fix from $1,600 2014-11-21
Dolibarr Erp\/crm MEDIUM 6.5
CVE-2014-3992

Multiple SQL injection vulnerabilities in Dolibarr ERP/CRM 3.5.3 allow remote authenticated users to execute arbitrary SQL commands via the (1) entit…

No fix yet
Fix from $1,600 2014-07-11
Dolibarr Erp\/crm HIGH 7.5
CVE-2012-1225

Multiple SQL injection vulnerabilities in Dolibarr CMS 3.2.0 Alpha and earlier allow remote authenticated users to execute arbitrary SQL commands via…

Fix: after 3.2.0
Fix from $1,950 2012-02-21
Dolibarr Erp\/crm HIGH 7.5
CVE-2012-1226EPSS 25%

Multiple directory traversal vulnerabilities in Dolibarr CMS 3.2.0 Alpha allow remote attackers to read arbitrary files and possibly execute arbitrar…

Patch available
Fix from $1,950 2012-02-21
Dolibarr Erp\/crm MEDIUM 6.5
CVE-2011-4802EPSS 5%

Multiple SQL injection vulnerabilities in Dolibarr 3.1.0 RC and probably earlier allow remote authenticated users to execute arbitrary SQL commands v…

Fix: after 3.1.0
Fix from $1,600 2011-12-14