Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Dolibarr - SQL Injection via sqlfilters Parameter in Multiple REST API List Endpoints
Vulnerability Description
Dolibarr through 23.0.3, fixed in commit 14db36e, contains a sql injection vulnerability that allows authenticated API users to exfiltrate arbitrary database contents by supplying malicious values to the sqlfilters query parameter in the setup dictionary and multicurrencies REST API endpoints. The affected endpoints in api_setup.class.php and api_multicurrencies.class.php validate sqlfilters only for balanced parentheses and rewrite matched triplets, allowing text placed outside the expected shape such as an appended UNION SELECT to be concatenated into the SQL WHERE clause unmodified, enabling retrieval of sensitive data including password hashes and API keys.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L
Vulnerability Type
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
Vulnerability Title
Dolibarr SQL注入漏洞
Vulnerability Description
Dolibarr是Dolibarr基金会开源的一个应用软件。可帮助管理用户组织的活动。 Dolibarr 23.0.3及之前版本存在SQL注入漏洞,该漏洞源于在setup dictionary和multicurrencies REST API端点的sqlfilters查询参数中进行SQL注入,仅对括号平衡进行验证,导致恶意值被连接进SQL WHERE子句,可能导致经过身份验证的API用户提取密码哈希值和API密钥等任意数据库内容。
CVSS Information
N/A
Vulnerability Type
N/A