CVE-2018-19994
An error-based SQL injection vulnerability in product/card.php in Dolibarr version 8.0.2 allows remote authenticated use
An error-based SQL injection vulnerability in product/card.php in Dolibarr version 8.0.2 allows remote authenticated users to execute arbitrary SQL commands via the desiredstock parameter.
HIGH · CVSS 8.8
EPSS 0.00251
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0