VDB

CVE-2018-10092

CVE-2018-10092 PUBLISHED CVSS 8 HIGH

The admin panel in Dolibarr before 7.0.2 might allow remote attackers to execute arbitrary commands by leveraging support for updating the antivirus command and parameters used to scan file uploads.

EPSS 2.04% · 79.8th percentile

Risk Scores

CVSS 3.0
8
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
EPSS Score
2.04%
79.8th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSdolibarr0, 3.5.5+dfsg1-2, 3.5.7+dfsg1-1

Timeline

  • May 22, 2018 CVE Published
  • Oct 3, 2019 CVE Updated
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Dec 28, 2021 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Mar 1, 2022 EPSS Score
  • May 2, 2022 EPSS Score
  • Sep 6, 2022 EPSS Score
  • Nov 8, 2022 EPSS Score
  • Jan 9, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›