CVE-2014-3244
01.02.2018, 17:29
XML external entity (XXE) vulnerability in the RSSDashlet dashlet in SugarCRM before 6.5.17 allows remote attackers to read arbitrary files or potentially execute arbitrary code via a crafted DTD in an XML request.Enginsight
Vendor | Product | Version |
---|---|---|
sugarcrm | sugarcrm | 𝑥 < 6.5.16 |
𝑥
= Vulnerable software versions
References