First published: Tue Apr 02 2019(Updated: )
SuiteCRM before 7.8.28, 7.9.x and 7.10.x before 7.10.15, and 7.11.x before 7.11.3 allows SQL Injection.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SugarCRM | =7.11.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-6506 is rated as a high severity vulnerability due to its potential for SQL injection.
CVE-2019-6506 affects SuiteCRM versions before 7.8.28, 7.9.x and 7.10.x before 7.10.15, and 7.11.x before 7.11.3.
To fix CVE-2019-6506, upgrade SuiteCRM to the latest versions 7.8.28, 7.10.15, or 7.11.3 or later.
Failing to address CVE-2019-6506 could allow attackers to execute arbitrary SQL commands on the database.
You can identify vulnerability to CVE-2019-6506 by checking if your SuiteCRM version is older than the patched versions mentioned.