Posted by Egidio Romano on Jun 23
————————————————————————–
SugarCRM <= 6.5.18 (SAML Authentication) XML External Entity Vulnerability
————————————————————————–
[-] Software Link:
[-] Affected Versions:
Version 6.5.18 CE and prior versions.
[-] Vulnerability Description:
The vulnerable code is located in the constructor method of the…