Critical severity9.8NVD Advisory· Published Oct 29, 2019· Updated Jun 16, 2026
CVE-2012-0694
CVE-2012-0694
Description
SugarCRM CE <= 6.3.1 contains scripts that use "unserialize()" with user controlled input which allows remote attackers to execute arbitrary PHP code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- SugarCRM/SugarCRM CEdescription
Patches
Vulnerability mechanics
References
3- www.exploit-db.com/exploits/19381nvdExploitThird Party AdvisoryVDB Entry
- seclists.org/bugtraq/2012/Jun/165nvdMailing ListThird Party Advisory
- security-tracker.debian.org/tracker/CVE-2012-0694nvdThird Party Advisory
News mentions
0No linked articles in our index yet.