Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2005-4086
Description:Directory traversal vulnerability in acceptDecline.php in Sugar Suite Open Source Customer Relationship Management (SugarCRM) 4.0 beta and earlier allows remote attackers to include arbitrary local files via ".." sequences in the beanFiles array parameter.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2005-4086
BugTraq ID: 15760
http://www.securityfocus.com/bid/15760
Bugtraq: 20051207 SugarSuite Open Source <= 4.0beta Remote code execution (Google Search)
http://www.securityfocus.com/archive/1/418840
http://rgod.altervista.org/sugar_suite_40beta.html
http://securitytracker.com/id?1015322
http://secunia.com/advisories/17948
http://www.vupen.com/english/advisories/2005/2800




© 1998-2025 E-Soft Inc. All rights reserved.