Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory Traversal vulnerability in YetiForceCompany YetiForceCRM versions 6.4.0 and before allows a remote authenticated attacker to obtain sensitive information via the license parameter in the LibraryLicense.php component.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
YetiForceCrm 安全漏洞
Vulnerability Description
YetiForceCrm是波兰YetiForce公司的一个开源的 Crm 系统。 YetiForce YetiForceCRM 6.4.0 及之前版本存在安全漏洞,该漏洞源于允许经过身份验证的远程攻击者通过 LibraryLicense.php 组件中的license参数获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A