CVE

Id
20692  
CVE No.
CVE-2006-4588  
Status
Candidate  
Description
vtiger CRM 4.2.4, and possibly earlier, allows remote attackers to bypass authentication and access administrative modules via a direct request to index.php with a modified module parameter, as demonstrated using the Settings module.  
Phase
Assigned (20060906)  
Votes
None (candidate not yet proposed)  
Comments