CVE Database
/

CVE-2012-1225

Back to search

CVE-2012-1225

Published: Feb 21, 2012

Modified: Sep 16, 2024

PUBLISHED

Description

Multiple SQL injection vulnerabilities in Dolibarr CMS 3.2.0 Alpha and earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) memberslist parameter (aka Member List) in list.php or (2) rowid parameter to adherents/fiche.php.

VendorProductVersions

n/a

n/a

affected
n/a

References

47969
third-party-advisory
x_refsource_SECUNIA
51956
vdb-entry
x_refsource_BID
79011
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now