Vulnerabilities (CVE)

Filtered by vendor Sugarcrm Subscribe
Filtered by product Sugar Suite
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-5082 1 Sugarcrm 1 Sugar Suite 2023-12-10 7.5 HIGH N/A
Unspecified vulnerability in Sugar Suite Open Source (SugarCRM) before 4.2.1 Patch C (20060917) has unspecified impact, related to code execution, and unspecified attack vectors.
CVE-2005-4086 1 Sugarcrm 1 Sugar Suite 2023-12-10 5.0 MEDIUM N/A
Directory traversal vulnerability in acceptDecline.php in Sugar Suite Open Source Customer Relationship Management (SugarCRM) 4.0 beta and earlier allows remote attackers to include arbitrary local files via ".." sequences in the beanFiles array parameter.
CVE-2005-4087 1 Sugarcrm 1 Sugar Suite 2023-12-10 7.5 HIGH N/A
PHP remote file include vulnerability in acceptDecline.php in Sugar Suite Open Source Customer Relationship Management (SugarCRM) 4.0 beta and earlier allows remote attackers to execute arbitrary PHP code via a URL in the beanFiles array parameter.