CNNVD-202510-022 Information

CNNVD ID

CNNVD-202510-022

CVE-2025-56588

  • CNNVD Published: 2025-10-01

Description (Chinese)

Dolibarr ERP & CRM是Dolibarr开源的一个企业管理软件。 Dolibarr ERP & CRM 21.0.1版本存在安全漏洞,该漏洞源于User模块配置中computed field参数存在远程代码执行漏洞。

Description (English)

Dolibar ERP & CRM is an enterprise management software from Dolibar Open Source. There is a security loophole in the Dolibarr ERP & CRM 21.0.1 version, which stems from the remote code implementation gap in the command field parameters in the User module configuration.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Dolibarr

Published

2025-10-01

Last Modified

2026-02-24

References

http://dolibarr.com https://github.com/PhDg1410/Research

Patch

https://www.dolibarr.org/

Share on: