First published: Wed Sep 20 2023(Updated: )
An issue in Dolibarr ERP CRM v.17.0.1 and before allows a remote privileged attacker to execute arbitrary code via a crafted command/script.
Credit: cve@mitre.org cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dolibarr Dolibarr Erp\/crm | <=17.0.1 | |
composer/dolibarr/dolibarr | <17.0.1 | 17.0.1 |
<=17.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue in Dolibarr ERP CRM is CVE-2023-38886.
The severity of CVE-2023-38886 is high (7.2).
This vulnerability in Dolibarr ERP CRM allows a remote privileged attacker to execute arbitrary code via a crafted command/script.
The affected version of Dolibarr ERP CRM is v.17.0.1 and versions before that.
Yes, a fix is available for CVE-2023-38886. It is recommended to update to version 17.0.2 or later.