Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
vtiger CRM before 5.1.0 allows remote authenticated users to bypass the permissions on the (1) Account Billing Address and (2) Shipping Address fields in a profile by creating a Sales Order (SO) associated with that profile.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
vtiger_crm 权限绕过漏洞
Vulnerability Description
vtiger CRM 5.1.0版本之前的版本允许远程认证用户通过创建一个)来绕过剖面图上的(1)Account Billing Address和(2)Shipping Address字段的许可,且该Sales Order (SO)与该剖面图相关。
CVSS Information
N/A
Vulnerability Type
N/A