Security Advisory

CVE-2023-38891

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-09-14 00:00:00
Last updated 2024-09-25 20:23:04
Assigner mitre
State PUBLISHED

Description

SQL injection vulnerability in Vtiger CRM v.7.5.0 allows a remote authenticated attacker to escalate privileges via the getQueryColumnsList function in ReportRun.php.