VYPR
Unrated severityNVD Advisory· Published Dec 8, 2005· Updated Apr 16, 2026

CVE-2005-4087

CVE-2005-4087

Description

PHP remote file include vulnerability in acceptDecline.php in Sugar Suite Open Source Customer Relationship Management (SugarCRM) 4.0 beta and earlier allows remote attackers to execute arbitrary PHP code via a URL in the beanFiles array parameter.

Affected products

2
  • cpe:2.3:a:sugarcrm:sugar_suite:3.5:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:sugarcrm:sugar_suite:3.5:*:*:*:*:*:*:*
    • cpe:2.3:a:sugarcrm:sugar_suite:4.0_beta:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.