CyberSec.Space Logo
返回 CVE 浏览器

CVE-2005-4086

MEDIUM
5.0
CVSS Severity Score
EPSS Score0.0870%
EPSS Percentile39.59th
Published2005年12月8日
Last Modified2026年4月16日

Vulnerability Description

Directory traversal vulnerability in acceptDecline.php in Sugar Suite Open Source Customer Relationship Management (SugarCRM) 4.0 beta and earlier allows remote attackers to include arbitrary local files via ".." sequences in the beanFiles array parameter.

Affected Platforms (CPE)

📦
Sugarcrm

Sugar Suite

= 3.5
📦
Sugarcrm

Sugar Suite

= 4.0_beta

References & Advisories

相关漏洞威胁