Vulnerabilities > Activewebsoftwares > Active Time Billing

DATE CVE VULNERABILITY TITLE RISK
2008-12-17 CVE-2008-5632 SQL Injection vulnerability in Activewebsoftwares Active Time Billing 3.2
SQL injection vulnerability in Account.asp in Active Time Billing 3.2 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters, possibly related to start.asp.
network
low complexity
activewebsoftwares CWE-89
7.5