Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in the Calendar module in vTiger CRM 5.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the onlyforuser parameter in an index action to index.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
vTiger CRM Calendar模块SQL注入漏洞
Vulnerability Description
Vtiger CRM是美国Vtiger公司的一套基于SugarCRM开发的客户关系管理系统(CRM)。该管理系统提供管理、收集、分析客户信息等功能。 vTiger CRM 5.2.1和之前版本中的Calendar模块存在SQL注入漏洞。远程攻击者可以借助onlyforuser参数执行任意SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A