CVETodo[verified]@CveTodoDisclosure
The post discloses an unauthenticated SQL injection flaw in Dolibarr 10.0.1’s viewcat.php, allowing attackers to inject malicious SQL via the elemid POST parameter.
David@DavidMarquet19General
The post lists several recent CVEs with their CVSS scores but provides no detail on exploitation, patches, or proof of concept, presenting a general vulnerability bulletin.
CRAC Learning - Tech@cracbotDisclosure
The post discloses an SQL injection vulnerability in Dolibarr ERP/CRM 10.0.1, providing the affected parameter and CVSS score, but offers no PoC, exploit, or patch information.
PulsePatch.io@pulsepatchioDisclosure
The post announces a SQL injection vulnerability (UBUNTU-CVE-2019-25452) in Dolibarr ERP/CRM 10.0.1 that permits unauthenticated attackers to run arbitrary SQL queries, urging users to review their installations.