Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
include/utils/ListViewUtils.php in vtiger CRM before 5.1.0 allows remote authenticated users to bypass intended access restrictions and read the (1) visibility, (2) location, and (3) recurrence fields of a calendar via a custom view.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
vtiger_crm 权限许可和访问控制漏洞
Vulnerability Description
vtiger CRM 5.1.0版本之前的版本的include/utils/ListViewUtils.php允许远程认证用户可以借助一个常规核查,绕过预设的访问限制并读取(1)清晰度,(2)定位,和(3)一个日历中的递归字段。
CVSS Information
N/A
Vulnerability Type
N/A