CVE-2023-38887
dolibarr erp/crm
File Upload vulnerability in Dolibarr ERP CRM v.17.0.1 and before allows a remote attacker to execute arbitrary code and obtain sensitive information via the extension filtering and renaming functions.
- CVSS
- 8.8
- EPSS
- 1.24% 66.2% percentile
- CISA KEV
- Not listed
- Published
- 2023.09.20