Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-29477

Опубликовано: 03 апр. 2024
Источник: nvd
CVSS3: 8.8
EPSS Низкий

Описание

Lack of sanitization during Installation Process in Dolibarr ERP CRM up to version 19.0.0 allows an attacker with adjacent access to the network to execute arbitrary code via a specifically crafted input.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:dolibarr:dolibarr_erp\/crm:*:*:*:*:*:*:*:*
Версия до 19.0.1 (исключая)

EPSS

Процентиль: 35%
0.00143
Низкий

8.8 High

CVSS3

Дефекты

CWE-94
CWE-94

Связанные уязвимости

CVSS3: 8.8
ubuntu
почти 2 года назад

Lack of sanitization during Installation Process in Dolibarr ERP CRM up to version 19.0.0 allows an attacker with adjacent access to the network to execute arbitrary code via a specifically crafted input.

CVSS3: 8.8
debian
почти 2 года назад

Lack of sanitization during Installation Process in Dolibarr ERP CRM u ...

CVSS3: 6.8
github
почти 2 года назад

Dolibarr ERP CRM Code Injection vulnerability during installation

EPSS

Процентиль: 35%
0.00143
Низкий

8.8 High

CVSS3

Дефекты

CWE-94
CWE-94