CVE-2019-17314
07.10.2019, 16:15
SugarCRM before 8.0.4 and 9.x before 9.0.2 allows directory traversal in the Configurator module by an Admin user.
Vendor | Product | Version |
---|---|---|
sugarcrm | sugarcrm | 7.9.0.0 ≤ 𝑥 < 7.9.5.0 |
sugarcrm | sugarcrm | 8.0.0 ≤ 𝑥 < 8.0.4 |
sugarcrm | sugarcrm | 9.0.0 ≤ 𝑥 < 9.0.2 |
sugarcrm | sugarcrm | 7.9.0.0 ≤ 𝑥 < 7.9.5.0 |
sugarcrm | sugarcrm | 8.0.0 ≤ 𝑥 < 8.0.4 |
sugarcrm | sugarcrm | 9.0.0 ≤ 𝑥 < 9.0.2 |
sugarcrm | sugarcrm | 7.9.0.0 ≤ 𝑥 < 7.9.5.0 |
sugarcrm | sugarcrm | 8.0.0 ≤ 𝑥 < 8.0.4 |
sugarcrm | sugarcrm | 9.0.0 ≤ 𝑥 < 9.0.2 |
𝑥
= Vulnerable software versions