Vulnerabilities > Activewebsoftwares > Active Ewebquiz

DATE CVE VULNERABILITY TITLE RISK
2008-12-17 CVE-2008-5631 SQL Injection vulnerability in Activewebsoftwares Active Ewebquiz 8.0
SQL injection vulnerability in start.asp in Active eWebquiz 8.0 allows remote attackers to execute arbitrary SQL commands via the (1) useremail parameter (aka username field) or the (2) password parameter.
network
low complexity
activewebsoftwares CWE-89
7.5