The following table lists the changes that have been made to the
CVE-2022-45185 vulnerability over time.
Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.
-
New CVE Received
by [email protected]Jan. 07, 2025
Action Type Old Value New Value Added Description An issue was discovered in SuiteCRM 7.12.7. Authenticated users can use CRM functions to upload malicious files. Then, deserialization can be used to achieve code execution. Added Reference https://docs.suitecrm.com/admin/releases/7.12.x/ Added Reference https://github.com/Orange-Cyberdefense/CVE-repository/ Added Reference https://github.com/Orange-Cyberdefense/CVE-repository/blob/master/PoCs/poc_SuiteCRM.py