CVE-2013-7225

EPSS 0.53%

Fat Free CRM vulnerable to SQL Injection

發布日:2022/5/17修改日:2024/12/3

描述

Multiple SQL injection vulnerabilities in `app/controllers/home_controller.rb` in Fat Free CRM before 0.12.1 allow remote authenticated users to execute arbitrary SQL commands via (1) the homepage timeline feature or (2) the activity feature.

受影響套件(1)

參考連結(8)