Vulnerability Description
vtiger CRM before 5.0.3 allows remote authenticated users to import and export the information for a contact even when they only have the View permission.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Vtiger | Vtiger Crm | <= 5.0.2 |
References
- http://osvdb.org/45781
- http://trac.vtiger.com/cgi-bin/trac.cgi/report/9
- http://trac.vtiger.com/cgi-bin/trac.cgi/ticket/2968Patch
- http://osvdb.org/45781
- http://trac.vtiger.com/cgi-bin/trac.cgi/report/9
- http://trac.vtiger.com/cgi-bin/trac.cgi/ticket/2968Patch
FAQ
What is CVE-2007-3599?
CVE-2007-3599 is a vulnerability with a CVSS score of 8.5 (HIGH). vtiger CRM before 5.0.3 allows remote authenticated users to import and export the information for a contact even when they only have the View permission.
How severe is CVE-2007-3599?
CVE-2007-3599 has been rated HIGH with a CVSS base score of 8.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-3599?
Check the references section above for vendor advisories and patch information. Affected products include: Vtiger Vtiger Crm.