Sploitus

Exploit for OS Command Injection in Dolibarr Dolibarr Erp/Crm

githubexploit Β· 2024-06-24

Exploit Code

README2 lines
## https://sploitus.com/exploit?id=9CFB491D-4D92-57AD-8622-9923D95D15DF
PoC exploit for CVE-2023-30253, an authenticated remote command execution vulnerability in Dolibarr 17.0.0 with the CMS Website plugin enabled. The exploit targets a php code injection bypassing application restrictions. The probable entry point is the exploit.py script, which is likely invoked via Python CLI. The vulnerability class/vector is remote command execution (RCE). Not specified. The expected impact is remote code execution.