CVE-2020-8804
SuiteCRM through 7.11.10 allows SQL Injection via the SOAP API, the EmailUIAjax interface, or the MailMerge module.
SuiteCRM through 7.11.10 allows SQL Injection via the SOAP API, the EmailUIAjax interface, or the MailMerge module.
MEDIUM · CVSS 6.5
EPSS 0.00336
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0