Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fpvg-m786-h5vr

Опубликовано: 13 июн. 2023
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

Dolibarr vulnerable to unauthenticated database access

An issue in Dolibarr v16.0.0 to v16.0.5 allows unauthenticated attackers to perform a database dump and access a company's entire customer file, prospects, suppliers, and employee information if a contact file exists.

Пакеты

Наименование

dolibarr/dolibarr

composer
Затронутые версииВерсия исправления

>= 16.0.0, < 16.0.5

16.0.5

EPSS

Процентиль: 100%
0.8984
Высокий

7.5 High

CVSS3

Дефекты

CWE-200
CWE-552

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 2 лет назад

An issue in Dolibarr 16 before 16.0.5 allows unauthenticated attackers to perform a database dump and access a company's entire customer file, prospects, suppliers, and employee information if a contact file exists.

CVSS3: 7.5
nvd
больше 2 лет назад

An issue in Dolibarr 16 before 16.0.5 allows unauthenticated attackers to perform a database dump and access a company's entire customer file, prospects, suppliers, and employee information if a contact file exists.

CVSS3: 7.5
debian
больше 2 лет назад

An issue in Dolibarr 16 before 16.0.5 allows unauthenticated attackers ...

EPSS

Процентиль: 100%
0.8984
Высокий

7.5 High

CVSS3

Дефекты

CWE-200
CWE-552