Description
SugarCRM before 8.0.4 and 9.x before 9.0.2 allows SQL injection in the Quotes module by a Regular user.
Remediation
References
Related Vulnerabilities
SharePoint Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-8580)
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-2200)
Sqlite Divide By Zero Vulnerability (CVE-2019-16168)
IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-1606)