Re: [Full-disclosure] vTiger CRM 5.2.x <= Remote Code Execution Vulnerability

2011-10-06 Thread Benji
and where in vTiger is this manipulatable from? On Wed, Oct 5, 2011 at 11:02 AM, YGN Ethical Hacker Group wrote: > vTiger CRM 5.2.x <= Remote Code Execution Vulnerability > > > 1. OVERVIEW > > The vTiger CRM 5.2.1 and lower versions are vulnerable to Remote Code > Execution. No fixed version has

[Full-disclosure] vTiger CRM 5.2.x <= Remote Code Execution Vulnerability

2011-10-05 Thread YGN Ethical Hacker Group
vTiger CRM 5.2.x <= Remote Code Execution Vulnerability 1. OVERVIEW The vTiger CRM 5.2.1 and lower versions are vulnerable to Remote Code Execution. No fixed version has been released as of 2011-10-05. 2. BACKGROUND vtiger CRM is a free, full-featured, 100% Open Source CRM software ideal for