Remote Code Execution Vulnerability in Dolibarr ERP CRM Software
CVE-2024-40137
Currently unrated
What is CVE-2024-40137?
A remote code execution vulnerability exists in Dolibarr ERP CRM before version 19.0.2-php8.2, specifically through the Computed field parameter within the Users Module Setup function. This flaw may allow an authenticated attacker to execute arbitrary code on the server, potentially compromising sensitive data and the overall integrity of the application. Organizations using affected versions are encouraged to apply the necessary security updates to mitigate this risk.
