Multiple SQL injection vulnerabilities in Campaign11.exe in Arial Software Campaign Enterprise before 11.0.551 allow remote attackers to execute arbitrary SQL commands via the (1) SerialNumber field to activate.asp or (2) UID field to User-Edit.asp.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2014-08-14T14:00:00

Updated: 2017-08-28T12:57:01

Reserved: 2012-06-29T00:00:00


Link: CVE-2012-3820

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2014-08-14T14:55:04.960

Modified: 2017-08-29T01:32:05.807


Link: CVE-2012-3820

JSON object: View

cve-icon Redhat Information

No data.

CWE