CVE-2005-4634: SQL Injection
SQL injection vulnerability in index.php in ActiveCampaign SupportTrio 1.4 allows remote attackers to execute arbitrary SQL commands via the page parameter. NOTE: the provenance of this information is unknown because the source URL is not available; the details are obtained solely from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-4634?
CVE-2005-4634 has a medium severity rating due to its SQL injection vulnerability that allows remote attackers to execute arbitrary SQL commands.
How do I fix CVE-2005-4634?
To fix CVE-2005-4634, it's recommended to upgrade ActiveCampaign SupportTrio to a patched version or implement input validation to sanitize the 'page' parameter.
Which versions of ActiveCampaign SupportTrio are affected by CVE-2005-4634?
CVE-2005-4634 specifically affects ActiveCampaign SupportTrio version 1.4.
What type of vulnerability is CVE-2005-4634?
CVE-2005-4634 is a SQL injection vulnerability that allows attackers to manipulate SQL queries.
Can CVE-2005-4634 be exploited remotely?
Yes, CVE-2005-4634 can be exploited remotely, allowing attackers to execute arbitrary SQL commands on the affected system.