PT-2026-79359 · Dolibarr · Dolibarr
CVSS v2.0
5.5
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Dolibarr versions prior to 24.0.0
Description
An improper authorization issue exists in the Account Handler component within the file htdocs/user/card.php. A remote attacker can exploit this by manipulating the
ID argument, allowing unauthorized access or actions.Recommendations
Upgrade to version 24.0.0.
Exploit
Fix
Incorrect Privilege Assignment
Improper Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Dolibarr