CVE

Id
91653  
CVE No.
CVE-2016-4834  
Status
Candidate  
Description
modules/Users/actions/Save.php in Vtiger CRM 6.4.0 and earlier does not properly restrict user-save actions, which allows remote authenticated users to create or modify user accounts via unspecified vectors.  
Phase
Assigned (20160517)  
Votes
None (candidate not yet proposed)  
Comments