vTiger CRM 5.3 and 5.4: 'files' Upload Folder Arbitrary PHP Code Execution Vulnerability
References
Link | Resource |
---|---|
https://community.rapid7.com/community/metasploit/blog/2013/10/30/seven-tricks-and-treats | Exploit Third Party Advisory |
http://www.exploit-db.com/exploits/29319 | Exploit Third Party Advisory VDB Entry |
https://community.rapid7.com/community/metasploit/blog/2013/10/30/seven-foss-disclosures-part-one | Third Party Advisory |
http://www.securityfocus.com/bid/63454 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-02-07 07:15
Updated : 2020-02-11 11:40
NVD link : CVE-2013-3591
Mitre link : CVE-2013-3591
JSON object : View
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
Products Affected
vtiger
- vtiger_crm