Known vulnerabilities in dolibarr 11.0.0-alpha
Vendor:
Dolibarr ERP & CRM
Software:
dolibarr
Version:
11.0.0-alpha
Software CPE:
cpe:2.3:a:dolibarr_erp_and_crm:dolibarr:*:*:*:*:*:*:*:*
Website:
https://www.dolibarr.org/
Total vulnerabilities:
5
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Vulnerabilities by Severity
22.0.5
23.0.3
18.0.10
23.0.2
18.0.9
23.0.1
23.0.0
22.0.4
22.0.3
22.0.2
18.0.8
22.0.1
21.0.4
21.0.3
22.0.0
21.0.2
18.0.7
21.0.1
21.0.0
20.0.4
20.0.3
20.0.2
19.0.4
18.0.6
20.0.1
20.0.0
19.0.3
19.0.2
19.0.1
19.0.0
18.0.5
17.0.4
18.0.4
18.0.3
18.0.2
18.0.1
18.0.0
17.0.3
17.0.2
17.0.1
16.0.5
17.0.0
16.0.4
16.0.3
16.0.2
16.0.1
16.0.0
15.0.3
15.0.2
15.0.1
15.0.0
14.0.5
14.0.4
14.0.3
13.0.5
14.0.2
14.0.1
14.0.0
13.0.4
13.0.3
13.0.2
13.0.1
12.0.5
13.0.0
12.0.4
12.0.3
2.8.0
2.7.1
2.7.0
2.6.1
2.6.0
2.5.0
12.0.2
12.0.1
11.0.5
12.0.0
11.0.4
10.0.7
11.0.3
11.0.2
11.0.1
11.0.0
10.0.6
10.0.5
10.0.4
10.0.3
11.0.0-alpha
9.0.5
10.0.2
10.0.1
10.0.0
9.0.4
9.0.3
9.0.2
9.0.1
9.0.0
8.0.6
8.0.5
8.0.4
8.0.3
8.0.2
8.0.1
8.0.0
7.0.5
7.0.4
7.0.3
7.0.2
7.0.1
7.0.0
6.0.8
6.0.7
6.0.6
6.0.5
6.0.4
6.0.3
6.0.2
6.0.1
6.0.0
5.0.7
5.0.6
5.0.5
5.0.4
5.0.3
5.0.2
5.0.1
5.0.0
4.0.6
4.0.5
4.0.4
4.0.3
4.0.2
4.0.1
4.0.0
3.9.4
3.9.3
3.9.2
3.9.1
3.9.0
3.8.4
3.8.3
3.8.2
3.8.1
3.8.0
3.8.
3.7.4
3.7.3
3.7.2
3.7.1
3.7.0
3.7.
3.6.6
3.6.5
3.6.4
3.6.3
3.6.2
3.6.1
3.6.0
3.6.
3.5.8
3.5.7
3.5.6
3.5.5
3.5.4
3.5.3
3.5.2
3.5.1
3.5.0
3.5.
3.4.2
3.4.1
3.4.0
3.4.
3.3.3
3.3.2
3.3.1
3.3.0
3.3.
3.2.3
3.2.2
3.2.1
3.2.0
3.1.3
3.1.2
3.1.1
3.1.0
3.0.1
3.0.0
2.9.0
2.8.1
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU46583 - Unrestricted Upload of File with Dangerous Type CVE-2020-14209 |
CWE-434 | High | 11.0.5 | 02.09.2020 |
SB2020082110 |
||
| #VU46546 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2020-13828 |
CWE-79 | Low | 11.0.5 | 31.08.2020 |
SB2020082110 |
||
| #VU46081 - Improper Privilege Management CVE-2020-14201 |
CWE-269 | Medium | 11.0.5 | 21.08.2020 |
SB2020082110 |
||
| #VU23049 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') |
CWE-89 | Low | 11.0.0 | 27.11.2019 |
SB2019112718 |
||
| #VU23048 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') |
CWE-89 | Low | 11.0.0 | 27.11.2019 |
SB2019112718 |