Description
SugarCRM before 8.0.4 and 9.x before 9.0.2 allows SQL injection in the Contacts module by a Regular user.
Remediation
References
Related Vulnerabilities
WordPress Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2013-2202)
Undertow Insertion of Sensitive Information into Log File Vulnerability (CVE-2019-10212)
GlassFish CVE-2011-3559 Vulnerability (CVE-2011-3559)
Zope Web Application Server Cryptographic Issues Vulnerability (CVE-2012-6661)