Back to search
CVE-2009-3251
Published: Sep 18, 2009
Modified: Sep 17, 2024
PUBLISHED
Description
include/utils/ListViewUtils.php in vtiger CRM before 5.1.0 allows remote authenticated users to bypass intended access restrictions and read the (1) visibility, (2) location, and (3) recurrence fields of a calendar via a custom view.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
57241
vdb-entry
x_refsource_OSVDB
http://trac.vtiger.com/cgi-bin/trac.cgi/ticket/4208
x_refsource_CONFIRM
36309
third-party-advisory
x_refsource_SECUNIA
http://trac.vtiger.com/cgi-bin/trac.cgi/changeset/12407
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now