Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Sat, 11 May 2013 21:05:23 +0200
From: chevalier 3as <>
Cc: Florian HENRY <>
Subject: CVE Request: Dolibarr - Multiple Vulnerabilities

Hello Kurt, Steve, All,

I'd like to request a CVE for two vulnerabilties in Dolibarr 3.3 and 3.4:

1- SQL injection in 'pays' parameter, correction details can be found here:

2- XSS vulnerabilty in several parameters, correction details can be found

Alaeddine Mesbahi

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.