CVE-2007-3616

Publication date

2007-07-06 19:00:00

Family

mitre

State

PUBLISHED

Description

index.php in vtiger CRM before 5.0.3 allows remote authenticated users to perform administrative changes to arbitrary profile settings via a certain profilePrivileges action in the Users module.