Description
Dolibarr ERP/CRM 4.0.4 has SQL Injection in doli/theme/eldy/style.css.php via the lang parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin BackWPup Cross-Site Scripting (3.2.3)
Atlassian Confluence Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2012-6342)
WordPress Plugin Photo Gallery by 10Web-Mobile-Friendly Image Gallery Cross-Site Scripting (1.2.12)
JBoss Application Server Improper Privilege Management Vulnerability (CVE-2012-2312)