First published: Fri Jun 07 2019(Updated: )
SuiteCRM 7.8.x before 7.8.30, 7.10.x before 7.10.17, and 7.11.x before 7.11.5 allows SQL Injection (issue 1 of 3).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SalesAgility SuiteCRM | >=7.8.0<=7.8.5 | |
SalesAgility SuiteCRM | >=7.8.6<=7.8.11 | |
SalesAgility SuiteCRM | >=7.8.12<7.8.30 | |
SalesAgility SuiteCRM | >=7.10.0<7.10.17 | |
SalesAgility SuiteCRM | >=7.11.0<7.11.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for the SuiteCRM SQL Injection vulnerability is CVE-2019-12598.
The severity level of CVE-2019-12598 is critical with a CVSS score of 9.8.
SuiteCRM versions 7.8.x before 7.8.30, 7.10.x before 7.10.17, and 7.11.x before 7.11.5 allow SQL Injection due to a security issue.
Versions 7.8.x before 7.8.30, 7.10.x before 7.10.17, and 7.11.x before 7.11.5 of SuiteCRM are affected by the SQL Injection vulnerability.
To fix the SuiteCRM SQL Injection vulnerability, it is recommended to update to version 7.8.30, 7.10.17, or 7.11.5 of SuiteCRM.