Description
Dolibarr ERP/CRM 3.3.1 does not properly validate user input in viewimage.php and barcode.lib.php which allows remote attackers to execute arbitrary commands.
Remediation
References
Related Vulnerabilities
WordPress Plugin W4 Post List Cross-Site Scripting (2.4.4)
WordPress Plugin Vertical News Scroller Unspecified Vulnerability (1.19)
WordPress Plugin WP Spell Check Cross-Site Scripting (9.2)
Joomla! Core 1.5.12 Arbitrary File Upload (1.5.12)
Apache Tomcat Improper Input Validation Vulnerability (CVE-2014-0095)