CVE-2004-1228 Information
Feb 14, 2021
cve
Description
The install scripts in SugarCRM Sugar Sales 2.0.1c and earlier are not removed after installation which allows attackers to obtain the MySQL administrative password in cleartext from an installation form or to cause a denial of service by changing database settings to the default.
Reference
http://marc.info/?l=bugtraq&m=110295433323795&w=2 https://exchange.xforce.ibmcloud.com/vulnerabilities/18449
Share on: