PT-2022-13165 · Dolibarr · Dolibarr
Published
2022-01-31
·
Updated
2025-04-03
·
CVE-2022-0414
CVSS v3.1
4.3
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
dolibarr/dolibarr versions prior to 16.0
dolibarr/dolibarr version 14.0.5 and earlier
Description
The issue is related to improper validation of specified quantity in input, which can lead to business logic errors. This can potentially be exploited, although specific details about real-world incidents or the number of affected devices are not provided.
Recommendations
For versions prior to 16.0, update to version 16.0 or later.
For version 14.0.5 and earlier, update to version 16.0 or later.
As a temporary workaround, consider restricting input validation to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dolibarr