PT-2026-47631 · Dolibarr+1 · Erp Crm+1
CVSS v2.0
6.5
Medium
| Vector | AV:N/AC:L/Au:S/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Dolibarr ERP CRM versions prior to 23.0.3
Description
An improper authorization issue exists within the Legacy Filemanager component, specifically affecting a function in the file
htdocs/core/filemanagerdol/connectors/php/config.inc.php. This flaw allows a remote attacker to bypass authorization controls.Recommendations
Update to version 23.0.3.
Exploit
Fix
Improper Authorization
Incorrect Privilege Assignment
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Erp Crm
Dolibarr