Description
SugarCRM before 8.0.4 and 9.x before 9.0.2 allows SQL injection in the Emails module by a Regular user.
Remediation
References
Related Vulnerabilities
Roundcube Resource Management Errors Vulnerability (CVE-2011-4078)
WordPress Plugin WC Duplicate Order Security Bypass (1.5)
WordPress Plugin Fast Secure Contact Form 'index.php' Cross-Site Scripting (3.0.3.1)
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-5730)