Description
There is a sensitive information disclosure vulnerability in document.php in Dolibarr ERP/CRM version 6.0.0 via the file parameter.
Remediation
References
Related Vulnerabilities
Drupal Core 8.5.x Cross-Site Scripting (8.5.0 - 8.5.14)
OpenSSL Resource Management Errors Vulnerability (CVE-2011-0014)
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2020-11619)
Drupal Core 9.0.x Remote Code Execution (9.0.0 - 9.0.7)
concrete5 Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-5107)