Skip to content
Noroxi

activewebsoftwares records

27 published records for vendor activewebsoftwares.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
24
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

27 records
  • CVE-2008-5958
    31Monitor

    Multiple SQL injection vulnerabilities in Active Test 2.1 allow remote attackers to execute arbitrary SQL commands via the QuizID parameter

    HighCVSS 7.5Proof of conceptEPSS 2%

    activewebsoftwares · active testJan 23, 2009

  • CVE-2008-5640
    30Monitor

    SQL injection vulnerability in bidhistory.asp in Active Bids 3.5 allows remote attackers to execute arbitrary SQL commands via the ItemID pa

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active bidsDec 17, 2008

  • CVE-2008-5365
    30Monitor

    SQL injection vulnerability in VoteHistory.asp in ActiveWebSoftwares ActiveVotes 2.2 allows remote attackers to execute arbitrary SQL comman

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · activevotesDec 8, 2008

  • CVE-2009-4437
    30Monitor

    Multiple SQL injection vulnerabilities in Active Auction House 3.6 allow remote attackers to execute arbitrary SQL commands via the (1) cati

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active auction houseDec 28, 2009

  • CVE-2008-5632
    30Monitor

    SQL injection vulnerability in Account.asp in Active Time Billing 3.2 allows remote attackers to execute arbitrary SQL commands via the (1)

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active time billingDec 17, 2008

  • CVE-2008-5974
    30Monitor

    Multiple SQL injection vulnerabilities in login.aspx in Active Price Comparison 4.0 allow remote attackers to execute arbitrary SQL commands

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active price comparisonJan 26, 2009

  • CVE-2008-5635
    30Monitor

    SQL injection vulnerability in account.asp in Active Membership 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) us

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active membershipDec 17, 2008

  • CVE-2008-5634
    30Monitor

    SQL injection vulnerability in account.asp in Active Force Matrix 2.0 allows remote attackers to execute arbitrary SQL commands via the (1)

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active force matrixDec 17, 2008

  • CVE-2008-5638
    30Monitor

    Multiple SQL injection vulnerabilities in Active Price Comparison 4 allow remote attackers to execute arbitrary SQL commands via the (1) Pro

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active price comparisonDec 17, 2008

  • CVE-2008-5641
    30Monitor

    SQL injection vulnerability in account.asp in Active Photo Gallery 6.2 allows remote attackers to execute arbitrary SQL commands via the (1)

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active photo galleryDec 17, 2008

  • CVE-2008-6889
    30Monitor

    SQL injection vulnerability in Merchantsadd.asp in ASPReferral 5.3 allows remote attackers to execute arbitrary SQL commands via the Account

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · aspreferralAug 3, 2009

  • CVE-2008-5627
    30Monitor

    SQL injection vulnerability in account.asp in Active Trade 2 allows remote attackers to execute arbitrary SQL commands via the (1) username

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active tradeDec 17, 2008

  • CVE-2008-5973
    30Monitor

    SQL injection vulnerability in login.aspx in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL commands via the password

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active web mailJan 26, 2009

  • CVE-2008-5633
    30Monitor

    SQL injection vulnerability in register.asp in ActiveVotes 2.2 allows remote attackers to execute arbitrary SQL commands via the (1) usernam

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · activevotesDec 17, 2008

  • CVE-2008-6286
    30Monitor

    Multiple SQL injection vulnerabilities in SubscriberStart.asp in Active Newsletter 4.3 allow remote attackers to execute arbitrary SQL comma

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active newsletterFeb 25, 2009

  • CVE-2008-6873
    30Monitor

    SQL injection vulnerability in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL commands via the TabOpenQuickTab1 parame

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active web mailJul 23, 2009

  • CVE-2008-5631
    30Monitor

    SQL injection vulnerability in start.asp in Active eWebquiz 8.0 allows remote attackers to execute arbitrary SQL commands via the (1) userem

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active ewebquizDec 17, 2008

  • CVE-2010-2359
    30Monitor

    SQL injection vulnerability in eWebQuiz.asp in ActiveWebSoftwares.com eWebquiz 8 allows remote attackers to execute arbitrary SQL commands v

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · ewebquizJun 21, 2010

  • CVE-2008-5972
    30Monitor

    SQL injection vulnerability in default.asp in Active Business Directory 2 allows remote attackers to execute arbitrary SQL commands via the

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active business directoryJan 26, 2009

  • CVE-2008-6380
    30Monitor

    SQL injection vulnerability in default.aspx in Active Web Helpdesk 2.0 allows remote attackers to execute arbitrary SQL commands via the Cat

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active web helpdeskMar 2, 2009

  • CVE-2009-4436
    30Monitor

    Multiple SQL injection vulnerabilities in Active Web Softwares eWebquiz 8 allow remote attackers to execute arbitrary SQL commands via the Q

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · ewebquizDec 28, 2009

  • CVE-2008-5975
    30Monitor

    SQL injection vulnerability in links.asp in Active Price Comparison 4.0 allows remote attackers to execute arbitrary SQL commands via the li

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active price comparisonJan 26, 2009

  • CVE-2009-4229
    30Monitor

    Multiple SQL injection vulnerabilities in ActiveWebSoftwares Active Bids allow remote attackers to execute arbitrary SQL commands via (1) th

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active bidsDec 8, 2009

  • CVE-2009-0429
    30Monitor

    Multiple SQL injection vulnerabilities in Active Bids allow remote attackers to execute arbitrary SQL commands via the (1) search parameter

    HighCVSS 7.5Proof of conceptEPSS 1%

    activewebsoftwares · active bidsFeb 4, 2009

  • CVE-2008-6387
    21Monitor

    Quick Tree View .NET 3.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to

    MediumCVSS 5.0Proof of conceptEPSS 3%

    activewebsoftwares · quick tree view .netMar 2, 2009