Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x4hr-w4vc-mqjf

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

vtiger CRM 4.2.4, and possibly earlier, allows remote attackers to bypass authentication and access administrative modules via a direct request to index.php with a modified module parameter, as demonstrated using the Settings module.

vtiger CRM 4.2.4, and possibly earlier, allows remote attackers to bypass authentication and access administrative modules via a direct request to index.php with a modified module parameter, as demonstrated using the Settings module.

EPSS

Процентиль: 76%
0.00994
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

vtiger CRM 4.2.4, and possibly earlier, allows remote attackers to bypass authentication and access administrative modules via a direct request to index.php with a modified module parameter, as demonstrated using the Settings module.

EPSS

Процентиль: 76%
0.00994
Низкий