CVE-2023-35808 | SugarCRM Enterprise up to 11.0.5/12.0.2 Notes unrestricted upload (EUVD-2023-39803)
A vulnerability labeled as problematic has been found in SugarCRM Enterprise up to 11.0.5/12.0.2. This affects an unknown part of the component Notes Module. Such manipulation leads to unrestricted upload.
This vulnerability is traded as CVE-2023-35808. Access to the local network is required for this attack to succeed. There is no exploit available.
The affected component should be upgraded.