EspoCRM Permissions Privileges and Access Controls Vulnerability - CVE-2014-7986 - Vulnerability Database

EspoCRM Permissions Privileges and Access Controls Vulnerability - CVE-2014-7986

Medium
Reference: CVE-2014-7986
Title: EspoCRM Permissions Privileges and Access Controls Vulnerability
Overview:

install/index.php in EspoCRM before 2.6.0 allows remote attackers to re-install the application via a 1 value in the installProcess parameter.