Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Users module in vTiger CRM 4.2 and earlier allows remote attackers to execute arbitrary PHP code via an arbitrary file in the templatename parameter, which is passed to the eval function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
vTiger CRM Users模块远程任意PHP代码执行漏洞
Vulnerability Description
Vtiger CRM是美国Vtiger公司的一套基于SugarCRM开发的客户关系管理系统(CRM)。该管理系统提供管理、收集、分析客户信息等功能。 vTiger CRM 4.2及更早版本中的Users模块,允许远程攻击者通过在传递给eval函数的templatename参数中提供一个任意的文件,就可以执行任意PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A