First published: Wed Apr 03 2024(Updated: )
Lack of sanitization during Installation Process in Dolibarr ERP CRM up to version 19.0.0 allows an attacker with adjacent access to the network to execute arbitrary code via a specifically crafted input.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
composer/dolibarr/dolibarr | <=19.0.0 | |
<19.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-29477 has a high severity rating due to the potential for arbitrary code execution.
To fix CVE-2024-29477, upgrade Dolibarr ERP CRM to version 19.0.1 or later.
CVE-2024-29477 affects users of Dolibarr ERP CRM versions up to 19.0.0.
CVE-2024-29477 requires adjacent network access for exploitation.
CVE-2024-29477 is a lack of sanitization vulnerability during the installation process.