Vulnerabilities > CVE-2005-3679 - Unspecified vulnerability in Activecampaign 1-2-All Broadcast Email 4.07
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
SQL injection vulnerability in admin/index.php in ActiveCampaign 1-2-All Broadcast Email allows remote attackers to execute arbitrary SQL commands and bypass authentication via the username field in the admin control panel.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | ActiveCampaign 1-2-All Broadcast Email 4.0 Admin Control Panel Username SQL Injection Vulnerability. CVE-2005-3679. Webapps exploit for php platform |
id | EDB-ID:26501 |
last seen | 2016-02-03 |
modified | 2005-11-12 |
published | 2005-11-12 |
reporter | bhs_team |
source | https://www.exploit-db.com/download/26501/ |
title | ActiveCampaign 1-2-All Broadcast Email 4.0 Admin Control Panel Username SQL Injection Vulnerability |