Description
File Upload vulnerability in Dolibarr ERP CRM v.17.0.1 and before allows a remote attacker to execute arbitrary code and obtain sensitive information via the extension filtering and renaming functions.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2504 | File Upload vulnerability in Dolibarr ERP CRM v.17.0.1 and before allows a remote attacker to execute arbitrary code and obtain sensitive information via the extension filtering and renaming functions. |
Github GHSA |
GHSA-g8h7-mcp6-pf47 | File Upload vulnerability in Dolibarr ERP CRM |
References
History
Tue, 24 Sep 2024 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-24T20:37:41.646Z
Reserved: 2023-07-25T00:00:00.000Z
Link: CVE-2023-38887
Updated: 2024-08-02T17:54:39.505Z
Status : Modified
Published: 2023-09-20T01:15:56.327
Modified: 2024-11-21T08:14:23.130
Link: CVE-2023-38887
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA