CVE-2021-3991
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Summary
CVE-2021-3991 is an authorization vulnerability affecting Dolibarr versions before the 'develop' branch. This issue allows users with restricted permissions in the 'Reception' section to bypass intended access restrictions by directly accessing specific reception details via URL. The vulnerability could potentially lead to unauthorized access to sensitive information within the affected system. Users are advised to upgrade to the latest Dolibarr version to mitigate this risk. The vulnerability enables users with limited permissions to gain unintended access to reception details, bypassing the intended access control. This issue could have serious consequences, including unauthorized access to confidential information, and is therefore a significant security concern for Dolibarr users. To protect against this vulnerability, it is recommended that users upgrade to the latest version of Dolibarr as soon as possible.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- GitLab
Affected Vendors
- GitLab Inc.