CVE-2016-4834
EUVD-2016-581601.08.2016, 02:59
modules/Users/actions/Save.php in Vtiger CRM 6.4.0 and earlier does not properly restrict user-save actions, which allows remote authenticated users to create or modify user accounts via unspecified vectors.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| vtiger | vtiger_crm | 𝑥 ≤ 6.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References