Arialsoftware
Arialsoftware Campaign Enterprise: vulnerabilidades y CVE
Arialsoftware Campaign Enterprise tiene 5 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE5
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2012-3821 | Media (4.3) | 1.2% | — | 10 ene 2020 | A Security Bypass vulnerability exists in the activate.asp page in Arial Software Campaign Enterprise 11.0.551, which could let a remote malicious user modify the SerialNumber field. |
| CVE-2012-3824 | Alta (7.5) | 1.8% | — | 10 ene 2020 | In Arial Campaign Enterprise before 11.0.551, multiple pages are accessible without authentication or authorization. |
| CVE-2012-3823 | Alta (7.5) | 1.5% | — | 10 ene 2020 | Arial Campaign Enterprise before 11.0.551 stores passwords in clear text and these may be retrieved. |
| CVE-2012-3822 | Alta (7.5) | 1.9% | — | 10 ene 2020 | Arial Campaign Enterprise before 11.0.551 has unauthorized access to the User-Edit.asp page, which allows remote attackers to enumerate users' credentials. |
| CVE-2012-3820 | Alta (7.5) | 2.1% | — | 14 ago 2014 | Multiple SQL injection vulnerabilities in Campaign11.exe in Arial Software Campaign Enterprise before 11.0.551 allow remote attackers to execute arbitrary SQL commands via the (1) SerialNumber field to activate.asp or… |