Description
SugarCRM before 8.0.4 and 9.x before 9.0.2 allows SQL injection in the history function by a Regular user.
Remediation
References
Related Vulnerabilities
TYPO3 Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-1607)
MongoDb Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4650)
WordPress Plugin WooCommerce Multiple Vulnerabilities (6.2.0)
WordPress Plugin Count per Day Multiple Cross-Site Scripting Vulnerabilities (3.5.4)