PT-2022-26769 · Dolibarr · Dolibarr

CVE-2022-43138

·

Published

2022-11-17

·

Updated

2025-04-03

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dolibarr Open Source ERP & CRM for Business versions prior to 14.0.1
Description The issue allows attackers to escalate privileges via a crafted API.
Recommendations For versions prior to 14.0.1, update to version 14.0.1 or later to resolve the issue.

Exploit

Fix

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BIT-DOLIBARR-2022-43138
CVE-2022-43138
GHSA-GH7M-J673-WM97

Affected Products

Dolibarr