Description
SugarCRM before 8.0.4 and 9.x before 9.0.2 allows directory traversal in the file function by a Regular user.
Remediation
References
Related Vulnerabilities
OpenSSL Integer Overflow or Wraparound Vulnerability (CVE-2021-23840)
WordPress Plugin WordPress Clean Up & Optimizer-Clean Up Optimizer SQL Injection (3.0.13)
WordPress Plugin Invit0r 'ofc_upload_image.php' Arbitrary File Upload (0.22)
Joomla! Core 1.6.0 Spam (1.6.0)
MyBB Server-Side Request Forgery (SSRF) Vulnerability (CVE-2017-7566)