Lucene search

K
osvGoogleOSV:CVE-2021-37517
HistoryMar 31, 2022 - 7:15 p.m.

CVE-2021-37517

2022-03-3119:15:08
Google
osv.dev
3
cve-2021-37517
dolibarr erp/crm
access control
denial of service

AI Score

6.7

Confidence

High

EPSS

0.001

Percentile

32.1%

An Access Control vulnerability exists in Dolibarr ERP/CRM 13.0.2, fixed version is 14.0.0,in the forgot-password function becuase the application allows email addresses as usernames, which can cause a Denial of Service.

AI Score

6.7

Confidence

High

EPSS

0.001

Percentile

32.1%