Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
WordPlugin in the wordintegration component in vtiger CRM before 5.0.3 allows remote authenticated users to bypass field level security permissions and merge arbitrary fields in an Email template, as demonstrated by the fields in the Contact module.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
vtiger CRM 远程验证漏洞
Vulnerability Description
vtiger CRM 5.0.3版本之前的版本的wordintegration组件的WordPlugin允许远程验证用户绕过字段水平安全许可并合并一个email模板中的任意字段,例如Contact模块中的字段。
CVSS Information
N/A
Vulnerability Type
N/A