First published: Sat Nov 26 2005(Updated: )
index.php in ActiveCampaign SupportTrio 1.4 and earlier allows remote attackers to read or include arbitrary files via the page parameter, possibly due to a directory traversal vulnerability.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ActiveCampaign SupportTrio | <=1.4 | |
ActiveCampaign SupportTrio | <=1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3830 is classified as a medium severity vulnerability due to its potential for unauthorized file access.
To fix CVE-2005-3830, update ActiveCampaign SupportTrio to version 1.4.1 or later.
CVE-2005-3830 is associated with directory traversal attacks that allow remote unauthorized access to files.
CVE-2005-3830 affects ActiveCampaign SupportTrio versions 1.4 and earlier.
Yes, CVE-2005-3830 can be exploited remotely by attackers to read or include arbitrary files.