📦 Sugarcrm

by Sugarcrm

🔍 What is Sugarcrm?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-46815

HIGH CVSS 8.8 Oct 27, 2023

SugarCRM has an unrestricted file upload vulnerability in the Notes module that allows authenticated users to upload malicious PHP files. This affects SugarCRM 12 before 12.0.4 and 13 before 13.0.2, e...

CVE-2023-35809

HIGH CVSS 8.8 Jun 17, 2023

This CVE describes a Bean Manipulation vulnerability in SugarCRM's REST API that allows authenticated users to inject custom PHP code through crafted requests due to missing input validation. It affec...

CVE-2023-35811

HIGH CVSS 8.8 Jun 17, 2023

This vulnerability allows authenticated users to execute arbitrary SQL code through the REST API due to missing input validation. It affects SugarCRM Enterprise versions before 11.0.6 and 12.x before ...