Description
SugarCRM before 8.0.4 and 9.x before 9.0.2 allows directory traversal in the Studio module by a Developer user.
Remediation
References
Related Vulnerabilities
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2021-32477)
OpenSSL Improper Input Validation Vulnerability (CVE-2010-0433)
WordPress Plugin WP Table Builder-WordPress Table Cross-Site Scripting (1.4.6)
WordPress Plugin Candidate Application Form Arbitrary File Download (1.0)