CVE-2006-6712

Cross-site scripting (XSS) vulnerability in SugarCRM Open Source 4.5.0f and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in crafted email messages.
Configurations

Configuration 1 (hide)

cpe:2.3:a:sugarcrm:sugarcrm:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:23

Type Values Removed Values Added
References () http://dl.sugarforge.org/sugardocs/Notes/ReleaseNotes/SugarOpenSource_ReleaseNotes_4.5.0g.pdf - URL Repurposed () http://dl.sugarforge.org/sugardocs/Notes/ReleaseNotes/SugarOpenSource_ReleaseNotes_4.5.0g.pdf - URL Repurposed
References () http://jvn.jp/jp/JVN%2374079537/index.html - () http://jvn.jp/jp/JVN%2374079537/index.html -
References () http://secunia.com/advisories/23424 - Patch, Vendor Advisory () http://secunia.com/advisories/23424 - Patch, Vendor Advisory
References () http://securitytracker.com/id?1017434 - () http://securitytracker.com/id?1017434 -
References () http://www.securityfocus.com/bid/21694 - () http://www.securityfocus.com/bid/21694 -
References () http://www.vupen.com/english/advisories/2006/5100 - () http://www.vupen.com/english/advisories/2006/5100 -

14 Feb 2024, 01:17

Type Values Removed Values Added
References (CONFIRM) http://dl.sugarforge.org/sugardocs/Notes/ReleaseNotes/SugarOpenSource_ReleaseNotes_4.5.0g.pdf - (CONFIRM) http://dl.sugarforge.org/sugardocs/Notes/ReleaseNotes/SugarOpenSource_ReleaseNotes_4.5.0g.pdf - URL Repurposed

Information

Published : 2006-12-23 01:28

Updated : 2024-11-21 00:23


NVD link : CVE-2006-6712

Mitre link : CVE-2006-6712

CVE.ORG link : CVE-2006-6712


JSON object : View

Products Affected

sugarcrm

  • sugarcrm