N/A
No CVSS
CVE-2012-4867
PUBLISHEDDirectory traversal vulnerability in modules/com_vtiger_workflow/sortfieldsjson.php in vtiger CRM 5.1.0 allows remote attackers to read arbitrary...
- Vendor
- n/a
- Product
- n/a
- Published
- Sep 06, 2012
- EPSS
- —
Automate This Intelligence with the Pro API
Everything on this page — CVSS, EPSS, exploit status, PoCs, scanner integrations, mentions, tags, and immediate honeypot data — is available programmatically for VM, SOC, and CTI workflows.
Description
Directory traversal vulnerability in modules/com_vtiger_workflow/sortfieldsjson.php in vtiger CRM 5.1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the module_name parameter.
CVSS Scores
No CVSS data available.
Exploitation Status
No exploitation signals recorded yet.
Timeline
-
CVE Published to Public
-
CVE ID Reserved