CVE-2021-41746

Publication date

2021-10-29 17:22:28

Family

mitre

State

PUBLISHED

Description

SQL Injection vulnerability exists in all versions of Yonyou TurboCRM.via the orgcode parameter in changepswd.php. Attackers can use the vulnerabilities to obtain sensitive database information.