Multiple SQL injection vulnerabilities in Active Test 2.1 allow remote attackers to execute arbitrary SQL commands via the QuizID parameter to (1) questions.asp, (2) importquestions.asp, and (3) quiztakers.asp.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2009-01-23T18:38:00

Updated: 2017-09-28T12:57:01

Reserved: 2009-01-23T00:00:00


Link: CVE-2008-5958

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2009-01-23T19:00:05.093

Modified: 2017-09-29T01:32:54.197


Link: CVE-2008-5958

JSON object: View

cve-icon Redhat Information

No data.

CWE