Description
An issue in Dolibarr 16 before 16.0.5 allows unauthenticated attackers to perform a database dump and access a company's entire customer file, prospects, suppliers, and employee information if a contact file exists.
Remediation
References
Related Vulnerabilities
MySQL CVE-2022-21332 Vulnerability (CVE-2022-21332)
WordPress Plugin Subscribe Sidebar by Blubrry Cross-Site Scripting (1.3.1)
WordPress Plugin EZPZ One Click Backup 'mail' Parameter Cross-Site Scripting (12.03.10)
Nginx Improper Certificate Validation Vulnerability (CVE-2009-3555)
WordPress Plugin CheetahO Image Compression and Optimizer Unspecified Vulnerability (1.4.2.1)