SugarCRM是美国SugarCRM公司的一套开源的客户关系管理系统(CRM)。该系统支持对不同的客户需求进行差异化营销、管理和分配销售线索,实现销售代表的信息共享和追踪。 SugarCRM 存在安全漏洞,该漏洞源于安装组件中存在授权绕过和PHP本地文件包含漏洞,允许通过HTTP请求对已配置的SugarCRM实例执行未经身份验证的远程代码。以下产品及版本受到影响:SugarCRM 8.0之前版本, 8.0版本至8.0.7版本, 9.0版本至9.0.4版本, 10.0版本至10.0.0版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-7769 | 8.6 HIGH | Command Injection |
| CVE-2020-7770 | 6.5 MEDIUM | Prototype Pollution |
| CVE-2020-12328 | Intel Thunderbolt DCH drivers 信息泄露漏洞 | |
| CVE-2020-8766 | Intel SGX DCAP 代码问题漏洞 | |
| CVE-2020-27385 | MacdonaldRobinson FlexDotnetCMS 访问控制错误漏洞 | |
| CVE-2020-12324 | Intel Thunderbolt DCH drivers 安全漏洞 | |
| CVE-2020-12325 | Intel Thunderbolt DCH drivers 缓冲区错误漏洞 | |
| CVE-2020-12332 | Intel Human Interface Device 安全漏洞 | |
| CVE-2020-12333 | Intel QAT 安全漏洞 | |
| CVE-2020-12335 | Intel Processor Identification Utility 安全漏洞 | |
| CVE-2020-12331 | Intel Unite Cloud Service client 访问控制错误漏洞 | |
| CVE-2020-12334 | Intel Advisor tools 安全漏洞 | |
| CVE-2020-12330 | Intel(R) Falcon + UAS AscTec Thermal Viewer 安全漏洞 | |
| CVE-2020-12323 | Intel ADAS IE 输入验证错误漏洞 | |
| CVE-2020-24525 | Intel NUCs 安全漏洞 | |
| CVE-2020-12337 | Intel NUC Kit 缓冲区错误漏洞 | |
| CVE-2020-12336 | Intel NUC Kit 默认配置问题漏洞 | |
| CVE-2020-12319 | Intel PROSet Wireless 安全漏洞 | |
| CVE-2020-12317 | Intel PROSet Wireless 缓冲区错误漏洞 | |
| CVE-2020-12318 | Intel PROSet Wireless 安全漏洞 |
Showing top 20 of 121 CVEs. View all on vendor page → →
No comments yet