Description
SugarCRM before 8.0.4 and 9.x before 9.0.2 allows SQL injection in the Administration module by a Developer user.
Remediation
References
Related Vulnerabilities
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2021-44040)
ownCloud Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-3834)
WordPress Plugin Affiliate Link Manager Cross-Site Scripting (2.1.1)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-0124)