CVE-2006-4588 Information
Feb 14, 2021
cve
Description
vtiger CRM 4.2.4 and possibly earlier allows remote attackers to bypass authentication and access administrative modules via a direct request to index.php with a modified module parameter as demonstrated using the Settings module.
Reference
http://secunia.com/advisories/21728 http://www.osvdb.org/28462 http://www.securityfocus.com/bid/19829 http://www.security-net.biz/adv/D3906a.txt http://www.vupen.com/english/advisories/2006/3444
Share on: