Vulnerabilities > Activewebsoftwares > Active Test > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2009-01-23 | CVE-2008-5958 | SQL Injection vulnerability in Activewebsoftwares Active Test 2.1 Multiple SQL injection vulnerabilities in Active Test 2.1 allow remote attackers to execute arbitrary SQL commands via the QuizID parameter to (1) questions.asp, (2) importquestions.asp, and (3) quiztakers.asp. | 7.5 |