A vulnerability classified as critical has been found in YetiForceCompany YetiForceCRM up to 6.4.0. Affected is an unknown function of the file LibraryLicense.php. The manipulation of the argument license leads to path traversal.
This vulnerability is traded as CVE-2023-49508. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.