Dolibarr Unrestricted Upload of File with Dangerous Type Vulnerability - CVE-2023-38887 - Vulnerability Database

Dolibarr Unrestricted Upload of File with Dangerous Type Vulnerability - CVE-2023-38887

High
Reference: CVE-2023-38887
Title: Dolibarr Unrestricted Upload of File with Dangerous Type Vulnerability
Overview:

File Upload vulnerability in Dolibarr ERP CRM v.17.0.1 and before allows a remote attacker to execute arbitrary code and obtain sensitive information via the extension filtering and renaming functions.