CVE Vulnerabilities

CVE-2005-4087

Published: Dec 08, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

PHP remote file include vulnerability in acceptDecline.php in Sugar Suite Open Source Customer Relationship Management (SugarCRM) 4.0 beta and earlier allows remote attackers to execute arbitrary PHP code via a URL in the beanFiles array parameter.

Affected Software

NameVendorStart VersionEnd Version
Sugar_suiteSugarcrm3.5 (including)3.5 (including)
Sugar_suiteSugarcrm4.0_beta (including)4.0_beta (including)

References