vtiger crm

NOTE: Possible has Elastix installed as well

Version

# bottom left, version is present
/vtigercrm

Interesting Paths

# config
/etc/amportal.conf 

# if asterisk call manager is present on system
/etc/asterisk/manager.conf 

VtigerCRM 5.1.0

# LFI
https://www.exploit-db.com/exploits/37637
https://www.exploit-db.com/exploits/18770

# Shell Upload as display picture
Settings > Under Communication Templates > Company Details > Edit
Upload Company Logo as PHP (if it allows)

Last updated