Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:26480
HistoryAug 24, 2020 - 3:59 a.m.

Arbitrary File Upload

2020-08-2403:59:50
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8
dolibarr
arbitrary file upload
html response code
storage privilege
software

EPSS

0.001

Percentile

35.1%

Dolibarr is vulnerable to arbitrary file upload. A user with read access privilege to the storage of files is able to perform unrestricted uploading of files once edited from “disabled” to “enabled” in the HTML response code in societe/document.php.

EPSS

0.001

Percentile

35.1%