Project Subscriptions
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 13 Apr 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dolibarr dolibarr Erp/crm
|
|
| Vendors & Products |
Dolibarr dolibarr Erp/crm
|
Mon, 13 Apr 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 12 Apr 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dolibarr ERP-CRM 8.0.4 contains an SQL injection vulnerability in the rowid parameter of the admin dict.php endpoint that allows attackers to execute arbitrary SQL queries. Attackers can inject malicious SQL code through the rowid POST parameter to extract sensitive database information using error-based SQL injection techniques. | |
| Title | Dolibarr ERP-CRM 8.0.4 SQL Injection via rowid Parameter | |
| First Time appeared |
Dolibarr
Dolibarr dolibarr Erp\/crm |
|
| Weaknesses | CWE-89 | |
| CPEs | cpe:2.3:a:dolibarr:dolibarr_erp\/crm:8.0.4:*:*:*:*:*:*:* | |
| Vendors & Products |
Dolibarr
Dolibarr dolibarr Erp\/crm |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-04-13T12:07:35.021Z
Reserved: 2026-04-12T12:16:07.503Z
Link: CVE-2019-25710
Updated: 2026-04-13T12:07:30.483Z
Status : Received
Published: 2026-04-12T13:16:34.127
Modified: 2026-04-12T13:16:34.127
Link: CVE-2019-25710
No data.
OpenCVE Enrichment
Updated: 2026-04-13T12:38:21Z