Sugarcrm SugarCRM是美国SugarCRM(Sugarcrm)公司的一套开源的客户关系管理系统(CRM)。该系统支持对不同的客户需求进行差异化营销、管理和分配销售线索,实现销售代表的信息共享和追踪。 SugarCRM的Compose Email部分允许发送带有附件的邮件。在指定文件名时,会调用一个验证例程: function safeAttachmentName($filename) { global $sugar_config; $badExtension = false; //get p
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2009-2161 | TorrentTrader Classic "backend/admin-functions.php" 目录遍历漏洞 | |
| CVE-2009-2154 | Sappy.Dk Impleo Music Collection admin/login.php SQL注入漏洞 | |
| CVE-2009-2153 | Sappy.Dk Impleo Music Collection index.php跨站脚本攻击漏洞 | |
| CVE-2009-2152 | AdaptWeb a_index.php SQL注入漏洞 | |
| CVE-2009-2151 | AdaptWeb "index.php" 目录遍历漏洞 | |
| CVE-2009-2150 | Campus Virtual-LMS多个跨站请求伪造漏洞 | |
| CVE-2009-2149 | Campus Virtual-LMS多个跨站脚本攻击漏洞 | |
| CVE-2009-2148 | Campus Virtual-LMS SQL注入漏洞 | |
| CVE-2009-2147 | phpWebThings 'fdown.php' SQL注入漏洞 | |
| CVE-2009-2145 | pantha translucid 多个跨站脚本攻击漏洞 | |
| CVE-2009-2144 | FireStatsSQL注入漏洞 | |
| CVE-2009-2143 | FireStats 'firestats-wordpress.php' 远程文件包含漏洞 | |
| CVE-2009-2142 | Zip Store Chat admin/index.asp多个SQL注入漏洞 | |
| CVE-2009-2141 | TBDEV.NET 多个跨站脚本攻击漏洞和HTML注入漏洞 | |
| CVE-2009-2162 | Ishii Xoops XOOPS MANIAC PukiWikiMod跨站脚本攻击漏洞 | |
| CVE-2009-2169 | Edraw PDF Viewer Component "pdfviewer.ocx" 任意文件上传漏洞 | |
| CVE-2009-2160 | TorrentTrader Classic 多个信息泄露漏洞 | |
| CVE-2009-2159 | TorrentTrader Classic "backup-database.php" 权限管理与访问控制漏洞 | |
| CVE-2009-2158 | TorrentTrader Classic "account-recover.php" 弱口令暴力破解漏洞 | |
| CVE-2009-2157 | TorrentTrader Classic 多个SQL注入漏洞 |
Showing top 20 of 31 CVEs. View all on vendor page → →
No comments yet