CVE-2015-6000
Unrestricted file upload vulnerability in the Settings_Vtiger_CompanyDetailsSave_Action class in modules/Settings/Vtiger/actions/CompanyDetailsSave.php in Vtiger CRM 6.3.0 and earlier allows remote authenticated users to execute arbitrary code by…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 40.2%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
Unrestricted file upload vulnerability in the Settings_Vtiger_CompanyDetailsSave_Action class in modules/Settings/Vtiger/actions/CompanyDetailsSave.php in Vtiger CRM 6.3.0 and earlier allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in test/logo/.
- CVSS 3.1
- 8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 40.24% probability · 99th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-434
- Affected
- vtiger/vtiger crm
- Source
- cret@cert.org
References
- http://b.fl7.de/2015/09/vtiger-crm-authenticated-rce-cve-2015-6000.htmlExploit, Third Party Advisory
- http://www.securityfocus.com//archive/1/536563/100/0/threadedExploit, Third Party Advisory, VDB Entry
- https://www.exploit-db.com/exploits/38345/Exploit, Third Party Advisory, VDB Entry
- http://b.fl7.de/2015/09/vtiger-crm-authenticated-rce-cve-2015-6000.htmlExploit, Third Party Advisory
- http://www.securityfocus.com//archive/1/536563/100/0/threadedExploit, Third Party Advisory, VDB Entry
- https://www.exploit-db.com/exploits/38345/Exploit, Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.