SuiteCRM 7.10.x versions prior to 7.10.23 and 7.11.x versions prior to 7.11.11 allow for an invalid Bean ID to be submitted Rajaneesh Share this blog post on Twitter Share this blog post on Facebook Share this blog post on LinkedIn Overview : SuiteCRM 7.10.x versions prior to 7.10.23 and 7.11.x versions prior to 7.11.11 allow for an invalid Bean ID to be submitted. Vulnerability Details : CVE-2020-8787 Security CVE: 2020-8803 – Local File Inclusion CVE: 2020-8801 – PHP Object Injections CVE: 2020-8800 – Second-Order PHP Object Injections CVE: 2020-8802 – Bean Manipulation Bug Fixes Issue: 8541 – MySQL Database breaking on special characters Backward incompatible config changes CONFIRM:https://docs.suitecrm.com/admin/releases/7.10.x/#_7_10_23 CONFIRM:https://docs.suitecrm.com/admin/releases/7.11.x/#_7_11_11
SuiteCRM 7.10.x versions prior to 7.10.23 and 7.11.x versions prior to 7.11.11 SQL Injection Vulnerability Overview : SuiteCRM 7.10.x versions prior to 7.10.23 and 7.11.x versions prior to 7.11.11 allow for an invalid Bean ID to be submitted.You may notice when... Rajaneesh Read more
Dell EMC Data Protection Advisor versions 6.3, 6.4, 6.5, 18.2 versions prior to patch 83, and 19.1 versions prior to patch 71 Overview : Dell EMC Data Protection Advisor versions 6.3, 6.4, 6.5, 18.2 versions prior to patch 83, and 19.1 versions prior to patch 71 contain a server... Rajaneesh Read more