3 results (0.007 seconds)

CVSS: 9.8EPSS: 1%CPEs: 7EXPL: 0

29 Sep 2006 — Unspecified vulnerability in Sugar Suite Open Source (SugarCRM) before 4.2.1 Patch C (20060917) has unspecified impact, related to code execution, and unspecified attack vectors. Vulnerabilidad no especificada en Sugar Suite Open Source (SugarCRM) anterior a 4.2.1 Patch C (20060917) tiene impacto no especificado, relacionado con ejecución de código, y vectores de ataque no especificados. • http://secunia.com/advisories/22110 •

CVSS: 7.5EPSS: 5%CPEs: 2EXPL: 4

08 Dec 2005 — Directory traversal vulnerability in acceptDecline.php in Sugar Suite Open Source Customer Relationship Management (SugarCRM) 4.0 beta and earlier allows remote attackers to include arbitrary local files via ".." sequences in the beanFiles array parameter. • https://www.exploit-db.com/exploits/1359 •

CVSS: 9.8EPSS: 3%CPEs: 2EXPL: 4

08 Dec 2005 — PHP remote file include vulnerability in acceptDecline.php in Sugar Suite Open Source Customer Relationship Management (SugarCRM) 4.0 beta and earlier allows remote attackers to execute arbitrary PHP code via a URL in the beanFiles array parameter. • https://www.exploit-db.com/exploits/1359 •