First published: Wed Nov 20 2019(Updated: )
Dolibarr ERP/CRM 3.3.1 does not properly validate user input in viewimage.php and barcode.lib.php which allows remote attackers to execute arbitrary commands.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dolibarr Dolibarr Erp\/crm | =3.3.1 | |
debian/dolibarr |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-2093 is a vulnerability in Dolibarr ERP/CRM 3.3.1 that allows remote attackers to execute arbitrary commands.
CVE-2013-2093 has a severity rating of critical with a CVSS score of 9.8.
CVE-2013-2093 affects Dolibarr ERP/CRM version 3.3.1.
Remote attackers can exploit CVE-2013-2093 by providing malicious input in viewimage.php and barcode.lib.php files.
No specific fixes are mentioned for CVE-2013-2093, but it is always recommended to upgrade to the latest version of Dolibarr ERP/CRM and apply any available security patches.