Critical severity9.8NVD Advisory· Published Feb 1, 2018· Updated Jun 17, 2026
CVE-2014-3244
CVE-2014-3244
Description
XML external entity (XXE) vulnerability in the RSSDashlet dashlet in SugarCRM before 6.5.17 allows remote attackers to read arbitrary files or potentially execute arbitrary code via a crafted DTD in an XML request.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <6.5.17
Patches
Vulnerability mechanics
References
3- web.archive.org/web/20151105182132/http://www.pnigos.com/nvdExploitThird Party Advisory
- seclists.org/fulldisclosure/2014/Jun/92nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/68102nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.