Description
SugarCRM before 8.0.4 and 9.x before 9.0.2 allows SQL injection in the pmse_Project module by a Regular user.
Remediation
References
Related Vulnerabilities
WordPress Plugin wp-football Multiple Cross-Site Scripting Vulnerabilities (1.1)
Django Improper Authentication Vulnerability (CVE-2021-44420)
WordPress Plugin W3 Total Cache Multiple Vulnerabilities (0.9.4)
YOURLS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3824)