CVE

Id
9653  
CVE No.
CVE-2004-1225  
Status
Candidate  
Description
SQL injection vulnerability in SugarCRM Sugar Sales before 2.0.1a allows remote attackers to execute arbitrary SQL commands and gain privileges via the record parameter in a DetailView action to index.php, and record parameters in other functionality.  
Phase
Assigned (20041214)  
Votes
None (candidate not yet proposed)  
Comments