CVE-2008-5627
EUVD-2008-560117.12.2008, 17:30
SQL injection vulnerability in account.asp in Active Trade 2 allows remote attackers to execute arbitrary SQL commands via the (1) username parameter (aka Email field) or the (2) password parameter. NOTE: some of these details are obtained from third party information.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| activewebsoftwares | active_trade | 2.0 |
𝑥
= Vulnerable software versions