SN-14-01: SugarCRM
Remote Code Execution Vulnerability

2014-10-01

Secure Network releases the security advisory SN-14-01 for a new vulnerability found in SugarCRM 6.5.17.

SN-14-01: SugarCRM is prone to Remote Code Execution (RCE) due to an unsafe use of eval() PHP function and improper parameter sanitization.

Permalink