Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-0745

Опубликовано: 16 мар. 2011
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4

Описание

SugarCRM before 6.1.3 does not properly handle reloads and direct requests for a warning page produced by a certain duplicate check, which allows remote authenticated users to discover (1) the names of customers via a ShowDuplicates action to the Accounts module, reachable through index.php; or (2) the names of contact persons via a ShowDuplicates action to the Contacts module, reachable through index.php.

РелизСтатусПримечание
dapper

ignored

end of life, was needs-triage
devel

DNE

hardy

DNE

karmic

DNE

lucid

DNE

maverick

DNE

natty

DNE

upstream

released

6.1.3

Показывать по

Ссылки на источники

EPSS

Процентиль: 90%
0.05636
Низкий

4 Medium

CVSS2

Связанные уязвимости

nvd
почти 15 лет назад

SugarCRM before 6.1.3 does not properly handle reloads and direct requests for a warning page produced by a certain duplicate check, which allows remote authenticated users to discover (1) the names of customers via a ShowDuplicates action to the Accounts module, reachable through index.php; or (2) the names of contact persons via a ShowDuplicates action to the Contacts module, reachable through index.php.

debian
почти 15 лет назад

SugarCRM before 6.1.3 does not properly handle reloads and direct requ ...

github
больше 3 лет назад

SugarCRM before 6.1.3 does not properly handle reloads and direct requests for a warning page produced by a certain duplicate check, which allows remote authenticated users to discover (1) the names of customers via a ShowDuplicates action to the Accounts module, reachable through index.php; or (2) the names of contact persons via a ShowDuplicates action to the Contacts module, reachable through index.php.

EPSS

Процентиль: 90%
0.05636
Низкий

4 Medium

CVSS2