High severity7.7NVD Advisory· Published Sep 5, 2024· Updated Jun 17, 2026
CVE-2024-45392
CVE-2024-45392
Description
SuiteCRM is an open-source customer relationship management (CRM) system. Prior to version 7.14.5 and 8.6.2, insufficient access control checks allow a threat actor to delete records via the API. Versions 7.14.5 and 8.6.2 contain a patch for the issue.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:salesagility:suitecrm:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:salesagility:suitecrm:*:*:*:*:*:*:*:*range: <7.14.5
- (no CPE)range: < 7.14.5
Patches
Vulnerability mechanics
References
2- github.com/salesagility/SuiteCRM/security/advisories/GHSA-8qfx-h7pm-2587nvdThird Party Advisory
- docs.suitecrm.com/admin/releases/7.14.x/nvdRelease Notes
News mentions
0No linked articles in our index yet.