Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in SageCRM 7.x before 7.3 SP3. The Component Manager functionality, provided by SageCRM, permits additional components to be added to the application to enhance provided functionality. This functionality allows a zip file to be uploaded, containing a valid .ecf component file, which will be extracted to the inf directory outside of the webroot. By creating a zip file containing an empty .ecf file, to pass file-validation checks, any other file provided in zip file will be extracted onto the filesystem. In this case, a web shell with the filename '..\WWWRoot\CustomPages\aspshell.asp' was included within the zip file that, when extracted, traversed back out of the inf directory and into the SageCRM webroot. This permitted remote interaction with the underlying filesystem with the highest privilege level, SYSTEM.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SageCRM 安全漏洞
Vulnerability Description
SageCRM是美国Sage公司的一套易于使用的、可扩展的客户关系管理解决方案。该方案可帮助用户随时访问企业内部的重要数据信息、帮助企业实现销售自动化、客户关怀,以及市场营销活动等。 SageCRM 7.3 SP3之前的7.x版本中的Component Manager功能存在安全漏洞。攻击者可利用该漏洞执行未授权的操作。
CVSS Information
N/A
Vulnerability Type
N/A