Description
install/index.php in EspoCRM before 2.6.0 allows remote attackers to re-install the application via a 1 value in the installProcess parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP Poll Maker-Best WordPress Poll for Voting Contest Arbitrary File Upload (3.4)
Magento Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2020-9664)
WordPress Plugin FeedWordPress Cross-Site Scripting (2014.0805)
WordPress Plugin WordPress Simple Shopping Cart Cross-Site Request Forgery (3.5)