Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2012-0694

Опубликовано: 29 окт. 2019
Источник: debian

Описание

SugarCRM CE <= 6.3.1 contains scripts that use "unserialize()" with user controlled input which allows remote attackers to execute arbitrary PHP code.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
sugarcrm-ce-5.0itppackage

Примечания

  • http://seclists.org/bugtraq/2012/Jun/165

Связанные уязвимости

CVSS3: 9.8
nvd
почти 7 лет назад

SugarCRM CE <= 6.3.1 contains scripts that use "unserialize()" with user controlled input which allows remote attackers to execute arbitrary PHP code.

CVSS3: 9.8
github
больше 4 лет назад

SugarCRM CE <= 6.3.1 contains scripts that use "unserialize()" with user controlled input which allows remote attackers to execute arbitrary PHP code.