Posted by Egidio Romano on Jun 23
—————————————————————————–
SugarCRM <= 6.5.18 (MySugar::addDashlet) Insecure fopen() Usage Vulnerability
—————————————————————————–
[-] Software Link:
[-] Affected Versions:
Version 6.5.18 CE and other versions.
[-] Vulnerability Description:
The vulnerable code is located within the MySugar::addDashlet() method:…