SugarCRM Improper Input Validation Vulnerability - CVE-2012-0694 - Vulnerability Database

SugarCRM Improper Input Validation Vulnerability - CVE-2012-0694

Critical
Reference: CVE-2012-0694
Title: SugarCRM Improper Input Validation Vulnerability
Overview:

SugarCRM CE lt 6.3.1 contains scripts that use quotunserialize()quot with user controlled input which allows remote attackers to execute arbitrary PHP code.