Description Dolibarr ERP/CRM 4.0.4 has SQL Injection in doli/theme/eldy/style.css.php via the lang parameter. Remediation References CVE-2017-7886 Related Vulnerabilities OpenSSL Excessive Iteration Vulnerability (CVE-2023-3817) Joomla Cryptographic Issues Vulnerability (CVE-2014-7228) WebLogic CVE-2020-14757 Vulnerability (CVE-2020-14757) WordPress Plugin NextGEN Gallery-WordPress Gallery Multiple Cross-Site Request Forgery Vulnerabilities (3.4.7) WordPress Plugin MoodThingy Mood Rating Widget 'postID' Parameter Blind SQL Injection (0.8.7) Severity Critical Classification CVE-2017-7886 CWE-138 CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Tags Missing Update Known Vulnerabilities