Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple SQL injection vulnerabilities in vTiger CRM 4.2 and earlier allow remote attackers to inject arbitrary SQL commands and bypass authentication via the (1) user_name and (2) date parameter in the HelpDesk module.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
vTiger CRM 多个SQL注入漏洞
Vulnerability Description
Vtiger CRM是美国Vtiger公司的一套基于SugarCRM开发的客户关系管理系统(CRM)。该管理系统提供管理、收集、分析客户信息等功能。 vTiger CRM 4.2及更早的版本中存在多个SQL注入漏洞,这允许远程攻击者可以通过以下方式注入任意SQL命令并绕过认证:HelpDesk模块中的 (1) user_name 和 (2) date 参数。
CVSS Information
N/A
Vulnerability Type
N/A