In Dolibarr 17.0.0 with the CMS Website plugin (core) enabled, an authenticated attacker can obtain remote command execution via php code injection bypassing the application restrictions.
-
Updated
Jun 24, 2024 - Python
In Dolibarr 17.0.0 with the CMS Website plugin (core) enabled, an authenticated attacker can obtain remote command execution via php code injection bypassing the application restrictions.
To associate your repository with the cve-2023-30253 topic, visit your repo's landing page and select "manage topics."