In Dolibarr 17.0.0 with the CMS Website plugin (core) enabled, an authenticated attacker can obtain remote command execution via php code injection bypassing the application restrictions.
-
Updated
Jun 24, 2024 - Python
In Dolibarr 17.0.0 with the CMS Website plugin (core) enabled, an authenticated attacker can obtain remote command execution via php code injection bypassing the application restrictions.
Add a description, image, and links to the cve-2023-30253 topic page so that developers can more easily learn about it.
To associate your repository with the cve-2023-30253 topic, visit your repo's landing page and select "manage topics."