KEVIntel
N/A
No CVSS

CVE-2012-4867

PUBLISHED

Directory traversal vulnerability in modules/com_vtiger_workflow/sortfieldsjson.php in vtiger CRM 5.1.0 allows remote attackers to read arbitrary...

Vendor
n/a
Product
n/a
Published
Sep 06, 2012
EPSS

Automate This Intelligence with the Pro API

Everything on this page — CVSS, EPSS, exploit status, PoCs, scanner integrations, mentions, tags, and immediate honeypot data — is available programmatically for VM, SOC, and CTI workflows.

Description

Directory traversal vulnerability in modules/com_vtiger_workflow/sortfieldsjson.php in vtiger CRM 5.1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the module_name parameter.

CVSS Scores

No CVSS data available.

Exploitation Status

No exploitation signals recorded yet.

Timeline

  • CVE Published to Public

  • CVE ID Reserved