CVE Vulnerabilities

CVE-2005-3824

Published: Nov 26, 2005 | Modified: Oct 19, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

The uploads module in vTiger CRM 4.2 and earlier allows remote attackers to upload arbitrary files, such as PHP files, via the add2db action.

Affected Software

Name Vendor Start Version End Version
Vtiger_crm Vtiger * 4.2 (including)

References