CVE-2023-4198
CVSS V2 None
CVSS V3 None
Description
Improper Access Control in Dolibarr ERP CRM <= v17.0.3 allows an unauthorized authenticated user to read a database table containing customer data
Overview
- CVE ID
- CVE-2023-4198
- Assigner
- STAR_Labs
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-11-01T08:01:16.469Z
- Last Modified Date
- 2023-11-01T08:01:16.469Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://starlabs.sg/advisories/23/23-4198 | third-party-advisory |
https://github.com/Dolibarr/dolibarr/commit/3065b9ca6ade988e8d7a8a8550415c0abb56b9cb#diff-7d68365a708c954051853ade884c7e97c6ff13150ee92657d6ffc8603e0f947b | patch |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-4198 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-4198 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-24 19:17:09 | Added to TrackCVE |