RSS   Vulnerabilities for 'Activevotes'   RSS

2008-12-17
 
CVE-2008-5633

CWE-89
 

 
SQL injection vulnerability in register.asp in ActiveVotes 2.2 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters, possibly related to start.asp. NOTE: some of these details are obtained from third party information.

 
2008-12-08
 
CVE-2008-5365

CWE-89
 

 
SQL injection vulnerability in VoteHistory.asp in ActiveWebSoftwares ActiveVotes 2.2 allows remote attackers to execute arbitrary SQL commands via the AccountID parameter.

 

 >>> Vendor: Activewebsoftwares 18 Products
Active auction house
Active photo gallery
Active newsletter
Active trade
Ewebquiz
Activevotes
Active ewebquiz
Active time billing
Active force matrix
Active membership
Active price comparison
Active bids
Active test
Active business directory
Active web mail
Active web helpdesk
Quick tree view .net
Aspreferral


Copyright 2024, cxsecurity.com

 

Back to Top