5
CVSSv2

CVE-2014-7986

Published: 31/10/2014 Updated: 09/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

install/index.php in EspoCRM prior to 2.6.0 allows remote malicious users to re-install the application via a 1 value in the installProcess parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

espocrm espocrm

Exploits

EspoCRM version 252 suffers from cross site scripting, local file inclusion, and improper access control vulnerabilities ...