CVE-2023-38891 | vTiger CRM 7.5.0 ReportRun.php getQueryColumnsList sql injection (EUVD-2023-42654)
A vulnerability, which was classified as critical, has been found in vTiger CRM 7.5.0. The affected element is the function getQueryColumnsList of the file ReportRun.php. Performing a manipulation results in sql injection.
This vulnerability is identified as CVE-2023-38891. The attack can be initiated remotely. There is not any exploit available.