CVE-2023-22952 | SugarCRM up to 12.0 Email Template code injection
A vulnerability was found in SugarCRM up to 12.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Email Template Handler. The manipulation leads to code injection.
This vulnerability is known as CVE-2023-22952. The attack needs to be done within the local network. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.