CVE Vulnerabilities

CVE-2007-1712

Published: Mar 27, 2007 | Modified: Oct 19, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in default.asp in ActiveWebSoftwares Active Auction Pro 7.1 allows remote attackers to execute arbitrary SQL commands via the catid parameter.

Affected Software

Name Vendor Start Version End Version
Active_auction_house Active_web_softwares 7.1 (including) 7.1 (including)

References