activewebsoftwares kayıtları
activewebsoftwares üreticisine ait 27 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 24
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')24
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
27 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2008-5958Kavram kanıtı | Multiple SQL injection vulnerabilities in Active Test 2.1 allow remote attackers to execute arbitrary SQL commands via the QuizID parameter activewebsoftwares · active test · CWE-89 | Yüksek7,5 | — | %1,7 | 23 Oca 2009 |
30İzleyin | CVE-2008-5640Kavram kanıtı | SQL injection vulnerability in bidhistory.asp in Active Bids 3.5 allows remote attackers to execute arbitrary SQL commands via the ItemID paactivewebsoftwares · active bids · CWE-89 | Yüksek7,5 | — | %1,2 | 17 Ara 2008 |
30İzleyin | CVE-2008-5365Kavram kanıtı | SQL injection vulnerability in VoteHistory.asp in ActiveWebSoftwares ActiveVotes 2.2 allows remote attackers to execute arbitrary SQL commanactivewebsoftwares · activevotes · CWE-89 | Yüksek7,5 | — | %1,2 | 8 Ara 2008 |
30İzleyin | CVE-2009-4437Kavram kanıtı | Multiple SQL injection vulnerabilities in Active Auction House 3.6 allow remote attackers to execute arbitrary SQL commands via the (1) catiactivewebsoftwares · active auction house · CWE-89 | Yüksek7,5 | — | %1,0 | 28 Ara 2009 |
30İzleyin | CVE-2008-5632Kavram kanıtı | SQL injection vulnerability in Account.asp in Active Time Billing 3.2 allows remote attackers to execute arbitrary SQL commands via the (1) activewebsoftwares · active time billing · CWE-89 | Yüksek7,5 | — | %1,0 | 17 Ara 2008 |
30İzleyin | CVE-2008-5974Kavram kanıtı | Multiple SQL injection vulnerabilities in login.aspx in Active Price Comparison 4.0 allow remote attackers to execute arbitrary SQL commandsactivewebsoftwares · active price comparison · CWE-89 | Yüksek7,5 | — | %1,0 | 26 Oca 2009 |
30İzleyin | CVE-2008-5635Kavram kanıtı | SQL injection vulnerability in account.asp in Active Membership 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) usactivewebsoftwares · active membership · CWE-89 | Yüksek7,5 | — | %1,0 | 17 Ara 2008 |
30İzleyin | CVE-2008-5634Kavram kanıtı | SQL injection vulnerability in account.asp in Active Force Matrix 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) activewebsoftwares · active force matrix · CWE-89 | Yüksek7,5 | — | %1,0 | 17 Ara 2008 |
30İzleyin | CVE-2008-5638Kavram kanıtı | Multiple SQL injection vulnerabilities in Active Price Comparison 4 allow remote attackers to execute arbitrary SQL commands via the (1) Proactivewebsoftwares · active price comparison · CWE-89 | Yüksek7,5 | — | %1,0 | 17 Ara 2008 |
30İzleyin | CVE-2008-5641Kavram kanıtı | SQL injection vulnerability in account.asp in Active Photo Gallery 6.2 allows remote attackers to execute arbitrary SQL commands via the (1)activewebsoftwares · active photo gallery · CWE-89 | Yüksek7,5 | — | %1,0 | 17 Ara 2008 |
30İzleyin | CVE-2008-6889Kavram kanıtı | SQL injection vulnerability in Merchantsadd.asp in ASPReferral 5.3 allows remote attackers to execute arbitrary SQL commands via the Accountactivewebsoftwares · aspreferral · CWE-89 | Yüksek7,5 | — | %1,0 | 3 Ağu 2009 |
30İzleyin | CVE-2008-5627Kavram kanıtı | SQL injection vulnerability in account.asp in Active Trade 2 allows remote attackers to execute arbitrary SQL commands via the (1) username activewebsoftwares · active trade · CWE-89 | Yüksek7,5 | — | %1,0 | 17 Ara 2008 |
30İzleyin | CVE-2008-5973Kavram kanıtı | SQL injection vulnerability in login.aspx in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL commands via the password activewebsoftwares · active web mail · CWE-89 | Yüksek7,5 | — | %1,0 | 26 Oca 2009 |
30İzleyin | CVE-2008-5633Kavram kanıtı | SQL injection vulnerability in register.asp in ActiveVotes 2.2 allows remote attackers to execute arbitrary SQL commands via the (1) usernamactivewebsoftwares · activevotes · CWE-89 | Yüksek7,5 | — | %1,0 | 17 Ara 2008 |
30İzleyin | CVE-2008-6286Kavram kanıtı | Multiple SQL injection vulnerabilities in SubscriberStart.asp in Active Newsletter 4.3 allow remote attackers to execute arbitrary SQL commaactivewebsoftwares · active newsletter · CWE-89 | Yüksek7,5 | — | %1,0 | 25 Şub 2009 |
30İzleyin | CVE-2008-6873Kavram kanıtı | SQL injection vulnerability in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL commands via the TabOpenQuickTab1 parameactivewebsoftwares · active web mail · CWE-89 | Yüksek7,5 | — | %1,0 | 23 Tem 2009 |
30İzleyin | CVE-2008-5631Kavram kanıtı | SQL injection vulnerability in start.asp in Active eWebquiz 8.0 allows remote attackers to execute arbitrary SQL commands via the (1) useremactivewebsoftwares · active ewebquiz · CWE-89 | Yüksek7,5 | — | %1,0 | 17 Ara 2008 |
30İzleyin | CVE-2010-2359Kavram kanıtı | SQL injection vulnerability in eWebQuiz.asp in ActiveWebSoftwares.com eWebquiz 8 allows remote attackers to execute arbitrary SQL commands vactivewebsoftwares · ewebquiz · CWE-89 | Yüksek7,5 | — | %1,0 | 21 Haz 2010 |
30İzleyin | CVE-2008-5972Kavram kanıtı | SQL injection vulnerability in default.asp in Active Business Directory 2 allows remote attackers to execute arbitrary SQL commands via the activewebsoftwares · active business directory · CWE-89 | Yüksek7,5 | — | %1,0 | 26 Oca 2009 |
30İzleyin | CVE-2008-6380Kavram kanıtı | SQL injection vulnerability in default.aspx in Active Web Helpdesk 2.0 allows remote attackers to execute arbitrary SQL commands via the Catactivewebsoftwares · active web helpdesk · CWE-89 | Yüksek7,5 | — | %1,0 | 2 Mar 2009 |
30İzleyin | CVE-2009-4436Kavram kanıtı | Multiple SQL injection vulnerabilities in Active Web Softwares eWebquiz 8 allow remote attackers to execute arbitrary SQL commands via the Qactivewebsoftwares · ewebquiz · CWE-89 | Yüksek7,5 | — | %1,0 | 28 Ara 2009 |
30İzleyin | CVE-2008-5975Kavram kanıtı | SQL injection vulnerability in links.asp in Active Price Comparison 4.0 allows remote attackers to execute arbitrary SQL commands via the liactivewebsoftwares · active price comparison · CWE-89 | Yüksek7,5 | — | %1,0 | 26 Oca 2009 |
30İzleyin | CVE-2009-4229Kavram kanıtı | Multiple SQL injection vulnerabilities in ActiveWebSoftwares Active Bids allow remote attackers to execute arbitrary SQL commands via (1) thactivewebsoftwares · active bids · CWE-89 | Yüksek7,5 | — | %0,9 | 8 Ara 2009 |
30İzleyin | CVE-2009-0429Kavram kanıtı | Multiple SQL injection vulnerabilities in Active Bids allow remote attackers to execute arbitrary SQL commands via the (1) search parameter activewebsoftwares · active bids · CWE-89 | Yüksek7,5 | — | %0,9 | 4 Şub 2009 |
21İzleyin | CVE-2008-6387Kavram kanıtı | Quick Tree View .NET 3.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to activewebsoftwares · quick tree view .net · CWE-200 | Orta5,0 | — | %2,6 | 2 Mar 2009 |
- CVE-2008-595831İzleyin
Multiple SQL injection vulnerabilities in Active Test 2.1 allow remote attackers to execute arbitrary SQL commands via the QuizID parameter
YüksekCVSS 7,5Kavram kanıtıEPSS %2activewebsoftwares · active test23 Oca 2009
- CVE-2008-564030İzleyin
SQL injection vulnerability in bidhistory.asp in Active Bids 3.5 allows remote attackers to execute arbitrary SQL commands via the ItemID pa
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active bids17 Ara 2008
- CVE-2008-536530İzleyin
SQL injection vulnerability in VoteHistory.asp in ActiveWebSoftwares ActiveVotes 2.2 allows remote attackers to execute arbitrary SQL comman
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · activevotes8 Ara 2008
- CVE-2009-443730İzleyin
Multiple SQL injection vulnerabilities in Active Auction House 3.6 allow remote attackers to execute arbitrary SQL commands via the (1) cati
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active auction house28 Ara 2009
- CVE-2008-563230İzleyin
SQL injection vulnerability in Account.asp in Active Time Billing 3.2 allows remote attackers to execute arbitrary SQL commands via the (1)
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active time billing17 Ara 2008
- CVE-2008-597430İzleyin
Multiple SQL injection vulnerabilities in login.aspx in Active Price Comparison 4.0 allow remote attackers to execute arbitrary SQL commands
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active price comparison26 Oca 2009
- CVE-2008-563530İzleyin
SQL injection vulnerability in account.asp in Active Membership 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) us
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active membership17 Ara 2008
- CVE-2008-563430İzleyin
SQL injection vulnerability in account.asp in Active Force Matrix 2.0 allows remote attackers to execute arbitrary SQL commands via the (1)
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active force matrix17 Ara 2008
- CVE-2008-563830İzleyin
Multiple SQL injection vulnerabilities in Active Price Comparison 4 allow remote attackers to execute arbitrary SQL commands via the (1) Pro
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active price comparison17 Ara 2008
- CVE-2008-564130İzleyin
SQL injection vulnerability in account.asp in Active Photo Gallery 6.2 allows remote attackers to execute arbitrary SQL commands via the (1)
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active photo gallery17 Ara 2008
- CVE-2008-688930İzleyin
SQL injection vulnerability in Merchantsadd.asp in ASPReferral 5.3 allows remote attackers to execute arbitrary SQL commands via the Account
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · aspreferral3 Ağu 2009
- CVE-2008-562730İzleyin
SQL injection vulnerability in account.asp in Active Trade 2 allows remote attackers to execute arbitrary SQL commands via the (1) username
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active trade17 Ara 2008
- CVE-2008-597330İzleyin
SQL injection vulnerability in login.aspx in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL commands via the password
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active web mail26 Oca 2009
- CVE-2008-563330İzleyin
SQL injection vulnerability in register.asp in ActiveVotes 2.2 allows remote attackers to execute arbitrary SQL commands via the (1) usernam
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · activevotes17 Ara 2008
- CVE-2008-628630İzleyin
Multiple SQL injection vulnerabilities in SubscriberStart.asp in Active Newsletter 4.3 allow remote attackers to execute arbitrary SQL comma
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active newsletter25 Şub 2009
- CVE-2008-687330İzleyin
SQL injection vulnerability in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL commands via the TabOpenQuickTab1 parame
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active web mail23 Tem 2009
- CVE-2008-563130İzleyin
SQL injection vulnerability in start.asp in Active eWebquiz 8.0 allows remote attackers to execute arbitrary SQL commands via the (1) userem
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active ewebquiz17 Ara 2008
- CVE-2010-235930İzleyin
SQL injection vulnerability in eWebQuiz.asp in ActiveWebSoftwares.com eWebquiz 8 allows remote attackers to execute arbitrary SQL commands v
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · ewebquiz21 Haz 2010
- CVE-2008-597230İzleyin
SQL injection vulnerability in default.asp in Active Business Directory 2 allows remote attackers to execute arbitrary SQL commands via the
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active business directory26 Oca 2009
- CVE-2008-638030İzleyin
SQL injection vulnerability in default.aspx in Active Web Helpdesk 2.0 allows remote attackers to execute arbitrary SQL commands via the Cat
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active web helpdesk2 Mar 2009
- CVE-2009-443630İzleyin
Multiple SQL injection vulnerabilities in Active Web Softwares eWebquiz 8 allow remote attackers to execute arbitrary SQL commands via the Q
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · ewebquiz28 Ara 2009
- CVE-2008-597530İzleyin
SQL injection vulnerability in links.asp in Active Price Comparison 4.0 allows remote attackers to execute arbitrary SQL commands via the li
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active price comparison26 Oca 2009
- CVE-2009-422930İzleyin
Multiple SQL injection vulnerabilities in ActiveWebSoftwares Active Bids allow remote attackers to execute arbitrary SQL commands via (1) th
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active bids8 Ara 2009
- CVE-2009-042930İzleyin
Multiple SQL injection vulnerabilities in Active Bids allow remote attackers to execute arbitrary SQL commands via the (1) search parameter
YüksekCVSS 7,5Kavram kanıtıEPSS %1activewebsoftwares · active bids4 Şub 2009
- CVE-2008-638721İzleyin
Quick Tree View .NET 3.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to
OrtaCVSS 5,0Kavram kanıtıEPSS %3activewebsoftwares · quick tree view .net2 Mar 2009