Vulnerabilities > Activewebsoftwares > Active Membership

DATE CVE VULNERABILITY TITLE RISK
2008-12-17 CVE-2008-5635 SQL Injection vulnerability in Activewebsoftwares Active Membership 2.0
SQL injection vulnerability in account.asp in Active Membership 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters, possibly related to start.asp.
network
low complexity
activewebsoftwares CWE-89
7.5