Описание
A Security Bypass vulnerability exists in the activate.asp page in Arial Software Campaign Enterprise 11.0.551, which could let a remote malicious user modify the SerialNumber field.
Ссылки
- Broken Link
- ExploitThird Party Advisory
- Third Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Broken Link
- ExploitThird Party Advisory
- Third Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1Версия до 11.0.551 (включая)
cpe:2.3:a:arialsoftware:campaign_enterprise:*:*:*:*:*:*:*:*
EPSS
Процентиль: 59%
0.0039
Низкий
4.3 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-863
Связанные уязвимости
github
почти 4 года назад
A Security Bypass vulnerability exists in the activate.asp page in Arial Software Campaign Enterprise 11.0.551, which could let a remote malicious user modify the SerialNumber field.
EPSS
Процентиль: 59%
0.0039
Низкий
4.3 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-863