VTiger CRM <= 8.1.0 does not correctly check user...
High severity
Unreviewed
Published
Aug 16, 2024
to the GitHub Advisory Database
•
Updated Aug 16, 2024
Description
Published by the National Vulnerability Database
Aug 16, 2024
Published to the GitHub Advisory Database
Aug 16, 2024
Last updated
Aug 16, 2024
VTiger CRM <= 8.1.0 does not correctly check user privileges. A low-privileged user can interact directly with the "Migration" administrative module to disable arbitrary modules.
References