Page 2 of 11 results (0.002 seconds)
CVSS: 7.5EPSS: 4%CPEs: 2EXPL: 1

CVE-2008-2045 – SugarCRM Community Edition 4.5.1/5.0.0 - File Disclosure
https://notcve.org/view.php?id=CVE-2008-2045
01 May 2008 — Absolute path traversal vulnerability in SugarCRM Sugar Community Edition 4.5.1 and 5.0.0 allows remote attackers to read arbitrary files via a full path in the URL parameter to modules/Feeds/Feed.php, which places the contents into a related cache file in the .cache/feeds directory. Vulnerabilidad de salto de ruta absoluta en SugarCRM Sugar Community Edition 4.5.1 y 5.0.0, permite a atacantes remotos leer los ficheros que deseen escribiendo una ruta completa en el parámetro URL de modules/Feeds/Feed.php, e... • https://www.exploit-db.com/exploits/5521 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •