cve/2023/CVE-2023-38891.md
2024-06-22 09:37:59 +00:00

687 B

CVE-2023-38891

Description

SQL injection vulnerability in Vtiger CRM v.7.5.0 allows a remote authenticated attacker to escalate privileges via the getQueryColumnsList function in ReportRun.php.

POC

Reference

Github