Security Advisory
CVE-2014-7986
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
install/index.php in EspoCRM before 2.6.0 allows remote attackers to re-install the application via a 1 value in the installProcess parameter.