CVE-2022-0224: SQL Injection in dolibarr/dolibarr
Published Jan 14, 2022
·Updated
dolibarr is vulnerable to Improper Neutralization of Special Elements used in an SQL Command
Affected Software
1 affected component
dolibarr Dolibarr Erp\/crm<15.0.0
Remediation
Event History
Jan 14, 2022
CVE Published
via MITRE·05:35 PM
Data Sourced
via MITRE·05:35 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for dolibarr?
The vulnerability ID for dolibarr is CVE-2022-0224.
2
What is the severity of CVE-2022-0224?
The severity of CVE-2022-0224 is critical with a score of 9.8.
3
What is the affected software for CVE-2022-0224?
The affected software for CVE-2022-0224 is Dolibarr Erp/crm version up to exclusive 15.0.0.
4
What is the CWE ID for CVE-2022-0224?
The CWE ID for CVE-2022-0224 is CWE-89.
5
How do I fix the vulnerability in dolibarr?
To fix the vulnerability in dolibarr, you should update to a version higher than 15.0.0.