Field Assessment
AI analysis pending.
CVE
CVE-2011-4559
Severity
HIGH
CVSS
7.5
EPSS
1.34%
Original Filing — NVD Description
SQL injection vulnerability in the Calendar module in vTiger CRM 5.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the onlyforuser parameter in an index action to index.php.