SuiteCRM是SuiteCRM(Suitecrm)团队的一个客户关系管理系统。 SuiteCRM存在注入漏洞,该漏洞源于SuiteCRM受到CSV 注入漏洞(公式注入)的影响。 低特权攻击者可以使用帐户模块在输入字段中注入有效载荷。 当管理员访问帐户模块以将数据导出为 CSV 文件并打开它时,将执行有效负载。 作为 CVE-2020-15301 的一部分,这没有得到正确修复,允许攻击者绕过安全措施。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| salesagility | SuiteCRM | v7.10.29 ~ v7.10* | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet