CVE-2007-3604

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
06/07/2007
Last modified:
09/04/2025

Description

vtiger CRM before 5.0.3 allows remote authenticated users with access to the Analytics DashBoard menu to bypass data restrictions and read the pipeline of the entire organization, possibly involving modules/Potentials/Potentials.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:vtiger:vtiger_crm:*:*:*:*:*:*:*:* 5.0.2 (including)