Code Injection in GitHub repository dolibarr/dolibarr prior to 15.0.1.
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.
Link | Tags |
---|---|
https://huntr.dev/bounties/b03d4415-d4f9-48c8-9ae2-d3aa248027b5 | issue tracking patch exploit third party advisory |
https://github.com/dolibarr/dolibarr/commit/2a48dd349e7de0d4a38e448b0d2ecbe25e968075 | third party advisory patch |