Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sugarcrm sugarcrm 3.5.1 vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2018-5715
phprint.php in SugarCRM 3.5.1 has XSS via a parameter name in the query string (aka a $key variable).
Sugarcrm Sugarcrm 3.5.1
1 EDB exploit
NA
CVE-2011-0745
SugarCRM prior to 6.1.3 does not properly handle reloads and direct requests for a warning page produced by a certain duplicate check, which allows remote authenticated users to discover (1) the names of customers via a ShowDuplicates action to the Accounts module, reachable thro...
Sugarcrm Sugarcrm 5.5.2
Sugarcrm Sugarcrm 1.5d
Sugarcrm Sugarcrm 5.0.0
Sugarcrm Sugarcrm 4.2.1
Sugarcrm Sugarcrm 5.5.4
Sugarcrm Sugarcrm 4.5.0f
Sugarcrm Sugarcrm 1.1a
Sugarcrm Sugarcrm 4.0
Sugarcrm Sugarcrm 5.2g
Sugarcrm Sugarcrm 5.1c
Sugarcrm Sugarcrm 5.2d
Sugarcrm Sugarcrm 3.5.1
Sugarcrm Sugarcrm 1.1b
Sugarcrm Sugarcrm 4.0.1
Sugarcrm Sugarcrm 5.1.0
Sugarcrm Sugarcrm 5.5
Sugarcrm Sugarcrm 4.1
Sugarcrm Sugarcrm 1.0g
Sugarcrm Sugarcrm 6.1.0
Sugarcrm Sugarcrm 5.5.1
Sugarcrm Sugarcrm 6.0
Sugarcrm Sugarcrm 4.5.1
1 EDB exploit
NA
CVE-2009-2978
SQL injection vulnerability in SugarCRM 4.5.1o and previous versions, 5.0.0k and previous versions, and 5.2.0g and previous versions, allows remote malicious users to execute arbitrary SQL commands via unspecified vectors.
Sugarcrm Sugarcrm 1.5d
Sugarcrm Sugarcrm 5.0.0
Sugarcrm Sugarcrm 4.2.1
Sugarcrm Sugarcrm 4.5.0f
Sugarcrm Sugarcrm 1.1a
Sugarcrm Sugarcrm 4.0
Sugarcrm Sugarcrm 5.2d
Sugarcrm Sugarcrm 3.5.1
Sugarcrm Sugarcrm 1.1b
Sugarcrm Sugarcrm 4.0.1
Sugarcrm Sugarcrm 4.1
Sugarcrm Sugarcrm 1.0g
Sugarcrm Sugarcrm 4.5.1
Sugarcrm Sugarcrm 4.5.0
Sugarcrm Sugarcrm
Sugarcrm Sugarcrm 5.2a
Sugarcrm Sugarcrm 2.0.1c
Sugarcrm Sugarcrm 1.1e
Sugarcrm Sugarcrm 2.0.1
Sugarcrm Sugarcrm 5.2f
Sugarcrm Sugarcrm 3.5
Sugarcrm Sugarcrm 5.2c
NA
CVE-2006-5082
Unspecified vulnerability in Sugar Suite Open Source (SugarCRM) prior to 4.2.1 Patch C (20060917) has unspecified impact, related to code execution, and unspecified attack vectors.
Sugarcrm Sugar Suite 3.5
Sugarcrm Sugar Suite 4.2
Sugarcrm Sugar Suite 3.5.1
Sugarcrm Sugar Suite 4.0.1
Sugarcrm Sugar Suite 4.2.1
Sugarcrm Sugar Suite 4.1
Sugarcrm Sugar Suite 4.0 Beta
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
type confusion
IMAP
CVE-2024-36103
CVE-2024-28995
CVE-2024-37325
CVE-2024-30078
CVE-2024-30082
SQL injection
CVE-2024-30052
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started