CVE Vulnerabilities

CVE-2007-3604

Published: Jul 06, 2007 | Modified: Nov 13, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

vtiger CRM before 5.0.3 allows remote authenticated users with access to the Analytics DashBoard menu to bypass data restrictions and read the pipeline of the entire organization, possibly involving modules/Potentials/Potentials.php.

Affected Software

Name Vendor Start Version End Version
Vtiger_crm Vtiger * 5.0.2 (including)

References