Activecampaign

1-2-all Broadcast Email

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.87%
  • Published 11.05.2007 17:19:00
  • Last modified 09.04.2025 00:30:58

Incomplete blacklist vulnerability in filemanager/browser/default/connectors/php/config.php in the FCKeditor module, as used in ActiveCampaign 1-2-All (aka 12All) 4.50 through 4.53.13, and possibly other products, allows remote authenticated administ...

Exploit
  • EPSS 1.62%
  • Published 18.11.2005 23:03:00
  • Last modified 03.04.2025 01:03:51

SQL injection vulnerability in admin/index.php in ActiveCampaign 1-2-All Broadcast Email allows remote attackers to execute arbitrary SQL commands and bypass authentication via the username field in the admin control panel.