--
SugarCRM (Web Logic Hooks module) Path Traversal Vulnerability
--
[-] Software Link:
http://www.sugarcrm.com
[-] Affected Versions:
All versions prior to 7.9.5.0, 8.0.2,
--
SugarCRM (Web Logic Hooks module) PHP Code Injection Vulnerability
--
[-] Software Link:
http://www.sugarcrm.com
[-] Affected Versions:
All versions prior to
SugarCRM (SaveDropDown) PHP Code Injection Vulnerability
[-] Software Link:
http://www.sugarcrm.com
[-] Affected Versions:
All versions prior to 7.9.5.0, 8.0.2, and 8.2.0.
[-]
-
SugarCRM (addLabels) PHP Code Injection Vulnerability
-
[-] Software Link:
http://www.sugarcrm.com
[-] Affected Versions:
All versions prior to 7.9.5.0, 8.0.2, and 8.2.0.
[-]
---
SugarCRM (portal_get_related_notes) SQL Injection Vulnerability
---
[-] Software Link:
http://www.sugarcrm.com
[-] Affected Versions:
All versions prior to 7.9.4.0 and
-
SugarCRM (ConnectorsController) Server-Side Request Forgery Vulnerability
-
[-] Software Link:
http://www.sugarcrm.com
[-] Affected Versions:
All
---
SugarCRM (WorkFlow module) PHP Code Injection Vulnerability
---
[-] Software Link:
http://www.sugarcrm.com
[-] Affected Versions:
All versions prior to 7.9.4.0 and 7.11.0.0.
Oracle Application Express (AnyChart) Flash-based Cross-Site Scripting
Vulnerability
[-] Software Link:
The GMP library uses asserts to crash a program at runtime when
presented with data it did not anticipate. The library also ignores
user requests to remove asserts using Posix's -DNDEBUG. Asserts are a
debugging aide intended for developement, and using them in production
software ranges from
Note: the current version of the following document is available here:
https://softwaresupport.softwaregrp.com/document/-/facetsearch/document/KM03309650
SUPPORT COMMUNICATION - SECURITY BULLETIN
Document ID: KM03309650
Version: 1
MFSBGN03838 rev.1 - UCMDB Configuration Management Service,
10 matches
Mail list logo