Home / exploitsPDF  

SugarCRM 13.0.1 Shell Upload

Posted on 27 October 2023

SugarCRM versions 13.0.1 and below suffer from a remote shell upload vulnerability in the set_note_attachment SOAP call.

 

TOP