First published: Fri Jun 07 2019(Updated: )
SuiteCRM 7.8.x before 7.8.30, 7.10.x before 7.10.17, and 7.11.x before 7.11.5 allows SQL Injection (issue 3 of 3).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SalesAgility SuiteCRM | >=7.8.0<=7.8.5 | |
SalesAgility SuiteCRM | >=7.8.6<=7.8.11 | |
SalesAgility SuiteCRM | >=7.8.12<7.8.30 | |
SalesAgility SuiteCRM | >=7.10.0<7.10.17 | |
SalesAgility SuiteCRM | >=7.11.0<7.11.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this issue in SuiteCRM is CVE-2019-12601.
CVE-2019-12601 has a severity level of critical.
CVE-2019-12601 affects SuiteCRM versions 7.8.x before 7.8.30, 7.10.x before 7.10.17, and 7.11.x before 7.11.5.
CVE-2019-12601 allows SQL Injection.
To fix the vulnerability in CVE-2019-12601, update your SuiteCRM installation to version 7.8.30, 7.10.17, or 7.11.5.