漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
SQL Injection in dolibarr/dolibarr
Vulnerability Description
SQL injection attacks can result in unauthorized access to sensitive data, such as passwords, credit card details, or personal user information. Many high-profile data breaches in recent years have been the result of SQL injection attacks, leading to reputational damage and regulatory fines. In some cases, an attacker can obtain a persistent backdoor into an organization's systems, leading to a long-term compromise that can go unnoticed for an extended period. This affect 16.0.1 and 16.0.2 only. 16.0.0 or lower, and 16.0.3 or higher are not affected
CVSS Information
N/A
Vulnerability Type
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
Vulnerability Title
Dolibarr SQL注入漏洞
Vulnerability Description
Dolibarr是一个应用软件。一个现代软件包,可帮助管理您组织的活动。 Dolibarr 16.0.1 和 16.0.2版本存在SQL注入漏洞,攻击者利用该漏洞可以未经授权访问敏感数据。
CVSS Information
N/A
Vulnerability Type
N/A