VYPR

DocuSign module

by Sugarcrm

CVEs (1)

  • CVE-2023-35810HigJun 17, 2023
    risk 0.47cvss 7.2epss 0.01

    An issue was discovered in SugarCRM Enterprise before 11.0.6 and 12.x before 12.0.3. A Second-Order PHP Object Injection vulnerability has been identified in the DocuSign module. By using crafted requests, custom PHP code can be injected and executed through the DocuSign module…