mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-28 01:04:30 +00:00
1.0 KiB
1.0 KiB
CVE-2019-1010054
Description
Dolibarr 7.0.0 is affected by: Cross Site Request Forgery (CSRF). The impact is: allow malitious html to change user password, disable users and disable password encryptation. The component is: Function User password change, user disable and password encryptation. The attack vector is: admin access malitious urls.
POC
Reference
- https://github.com/lucasgcilento/CVE/blob/master/Dolibarr_CSRF
- https://github.com/lucasgcilento/CVE/blob/master/Dolibarr_CSRF