Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2013-5091
Description:SQL injection vulnerability in CalendarCommon.php in vTiger CRM 5.4.0 and possibly earlier allows remote authenticated users to execute arbitrary SQL commands via the onlyforuser parameter in an index action to index.php. NOTE: this issue might be a duplicate of CVE-2011-4559.
Test IDs: 1.3.6.1.4.1.25623.1.0.804055  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2013-5091
Bugtraq: 20130918 SQL Injection in vtiger CRM (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2013-09/0079.html
http://www.exploit-db.com/exploits/28409
https://www.htbridge.com/advisory/HTB23168
http://osvdb.org/76138




© 1998-2025 E-Soft Inc. All rights reserved.