Vulnerabilities > Activewebsoftwares > Active Time Billing > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2008-12-17 | CVE-2008-5632 | SQL Injection vulnerability in Activewebsoftwares Active Time Billing 3.2 SQL injection vulnerability in Account.asp in Active Time Billing 3.2 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters, possibly related to start.asp. | 7.5 |