CVE-2004-1225

SQL injection vulnerability in SugarCRM Sugar Sales before 2.0.1a allows remote attackers to execute arbitrary SQL commands and gain privileges via the record parameter in a DetailView action to index.php, and record parameters in other functionality.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sugarcrm:sugarcrm:1.0:*:*:*:*:*:*:*
cpe:2.3:a:sugarcrm:sugarcrm:1.0f:*:*:*:*:*:*:*
cpe:2.3:a:sugarcrm:sugarcrm:1.0g:*:*:*:*:*:*:*
cpe:2.3:a:sugarcrm:sugarcrm:1.1:*:*:*:*:*:*:*
cpe:2.3:a:sugarcrm:sugarcrm:1.1a:*:*:*:*:*:*:*
cpe:2.3:a:sugarcrm:sugarcrm:1.1b:*:*:*:*:*:*:*
cpe:2.3:a:sugarcrm:sugarcrm:1.1c:*:*:*:*:*:*:*
cpe:2.3:a:sugarcrm:sugarcrm:1.1d:*:*:*:*:*:*:*
cpe:2.3:a:sugarcrm:sugarcrm:1.1e:*:*:*:*:*:*:*
cpe:2.3:a:sugarcrm:sugarcrm:1.1f:*:*:*:*:*:*:*
cpe:2.3:a:sugarcrm:sugarcrm:1.5d:*:*:*:*:*:*:*
cpe:2.3:a:sugarcrm:sugarcrm:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:sugarcrm:sugarcrm:2.0.1a:*:*:*:*:*:*:*

History

20 Nov 2024, 23:50

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=110295433323795&w=2 - () http://marc.info/?l=bugtraq&m=110295433323795&w=2 -
References () http://www.gulftech.org/?node=research&article_id=00053-120104 - () http://www.gulftech.org/?node=research&article_id=00053-120104 -
References () http://www.securityfocus.com/bid/11740 - Exploit, Vendor Advisory () http://www.securityfocus.com/bid/11740 - Exploit, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/18325 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/18325 -

Information

Published : 2005-01-10 05:00

Updated : 2024-11-20 23:50


NVD link : CVE-2004-1225

Mitre link : CVE-2004-1225

CVE.ORG link : CVE-2004-1225


JSON object : View

Products Affected

sugarcrm

  • sugarcrm