Vulnerabilities > Activewebsoftwares > Active Force Matrix > High

DATE CVE VULNERABILITY TITLE RISK
2008-12-17 CVE-2008-5634 SQL Injection vulnerability in Activewebsoftwares Active Force Matrix 2.0
SQL injection vulnerability in account.asp in Active Force Matrix 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters, possibly related to start.asp.
network
low complexity
activewebsoftwares CWE-89
7.5