Description
The DMS/ECM module in Dolibarr 11.0.4 allows users with the 'Setup documents directories' permission to rename uploaded files to have insecure file extensions. This bypasses the .noexe protection mechanism against XSS.
Remediation
References
Related Vulnerabilities
WordPress Plugin Statistics Remote Code Execution (1.8)
ATutor Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-11446)
WordPress Plugin WP Publication Archive 'file' Parameter Directory Traversal (2.3)
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2011-0447)