Multiple SQL injection vulnerabilities in Campaign11.exe in Arial Software Campaign Enterprise before 11.0.551 allow remote attackers to execute arbitrary SQL commands via the (1) SerialNumber field to activate.asp or (2) UID field to User-Edit.asp.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2014-08-14T14:00:00

Updated: 2024-08-06T20:21:03.978Z

Reserved: 2012-06-29T00:00:00

Link: CVE-2012-3820

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2014-08-14T14:55:04.960

Modified: 2017-08-29T01:32:05.807

Link: CVE-2012-3820

cve-icon Redhat

No data.