Active Bids
Activewebsoftwares · 4 CVEs
CVE-2009-4229
HIGH
Multiple SQL injection vulnerabilities in ActiveWebSoftwares Active Bids allow remote attackers to execute arbitrary SQ…
Dec 8, 2009
CVE-2009-0430
MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in Active Bids allow remote attackers to inject arbitrary web scrip…
Feb 5, 2009
CVE-2009-0429
HIGH
Multiple SQL injection vulnerabilities in Active Bids allow remote attackers to execute arbitrary SQL commands via the…
Feb 5, 2009
CVE-2008-5640
HIGH
SQL injection vulnerability in bidhistory.asp in Active Bids 3.5 allows remote attackers to execute arbitrary SQL comma…
Dec 17, 2008
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2009-4229 | Multiple SQL injection vulnerabilities in ActiveWebSoftwares Active Bids allow remote attackers to execute arbitrary SQL commands via (1) the catid parameter i… | HIGH | 0.91% | Dec 8, 2009 |
| CVE-2009-0430 | Multiple cross-site scripting (XSS) vulnerabilities in Active Bids allow remote attackers to inject arbitrary web script or HTML via the (1) search parameter t… | MEDIUM | 1.19% | Feb 5, 2009 |
| CVE-2009-0429 | Multiple SQL injection vulnerabilities in Active Bids allow remote attackers to execute arbitrary SQL commands via the (1) search parameter to search.asp, (2)… | HIGH | 0.91% | Feb 5, 2009 |
| CVE-2008-5640 | SQL injection vulnerability in bidhistory.asp in Active Bids 3.5 allows remote attackers to execute arbitrary SQL commands via the ItemID parameter. | HIGH | 1.20% | Dec 17, 2008 |
Showing 1 to 4 of 4 CVEs