Description
SugarCRM before 8.0.4 and 9.x before 9.0.2 allows directory traversal in the file function by a Regular user.
Remediation
References
Related Vulnerabilities
Roundcube Resource Management Errors Vulnerability (CVE-2008-5620)
WordPress Plugin Facebook Like Box Multiple Vulnerabilities (2.9.1)
WordPress Plugin WP Inimat Cross-Site Scripting (1.0)
WordPress Plugin Sociable Cross-Site Scripting (4.3.4.1)
WordPress Plugin 1 Flash Gallery Cross-Site Scripting and SQL Injection Vulnerabilities (0.2.5)