CVE Tools

Active-web-softwares

9 CVEs tracked since 2005. Since Apr 2005, none of them reached CISA KEV.

Active-web-softwares CVEs per month

Apr 2005 to Jan 2009. Point at a month, or focus the strip and use the arrow keys.
Active-web-softwares CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2005-0420
2005-05null or fewer
2005-0620
2005-07null or fewer
2005-08null or fewer
2005-09null or fewer
2005-10null or fewer
2005-11null or fewer
2005-12null or fewer
2006-01null or fewer
2006-02null or fewer
2006-03null or fewer
2006-04null or fewer
2006-05null or fewer
2006-06null or fewer
2006-07null or fewer
2006-08null or fewer
2006-09null or fewer
2006-10null or fewer
2006-11null or fewer
2006-12null or fewer
2007-01null or fewer
2007-02null or fewer
2007-0340
2007-04null or fewer
2007-05null or fewer
2007-06null or fewer
2007-07null or fewer
2007-08null or fewer
2007-09null or fewer
2007-10null or fewer
2007-11null or fewer
2007-12null or fewer
2008-01null or fewer
2008-02null or fewer
2008-03null or fewer
2008-04null or fewer
2008-05null or fewer
2008-06null or fewer
2008-07null or fewer
2008-08null or fewer
2008-09null or fewer
2008-10null or fewer
2008-11null or fewer
2008-12null or fewer
2009-0110

Products

The products that kept showing up in Active-web-softwares's monthly top three, with their CVEs summed over those months.

  1. Active Auction House32 months
  2. Activebuyandsell21 month
  3. Active Link Engine11 month
  4. Active Newsletter11 month
  5. Active Test11 month

Latest CVEs

The 9 most recently published vulnerabilities affecting Active-web-softwares.

  1. CVE-2008-5959Multiple SQL injection vulnerabilities in start.asp in Active Test 2.1 allow remote attackers to execute arbitrary SQL commands via the (1) useremail parameter (aka username field) or (2) password ...7.5
  2. CVE-2007-1712SQL injection vulnerability in default.asp in ActiveWebSoftwares Active Auction Pro 7.1 allows remote attackers to execute arbitrary SQL commands via the catid parameter.7.5
  3. CVE-2007-1696SQL injection vulnerability in ViewNewspapers.asp in Active Newsletter 4.3 and earlier allows remote attackers to execute arbitrary SQL commands via the NewsPaperID parameter.7.5
  4. CVE-2007-1629SQL injection vulnerability in default.asp in ActiveWebSoftwares Active Photo Gallery allows remote attackers to execute arbitrary SQL commands via the catid parameter.7.5
  5. CVE-2007-1630SQL injection vulnerability in default.asp in ActiveWebSoftwares Active Link Engine allows remote attackers to execute arbitrary SQL commands via the catid parameter.7.5
  6. CVE-2005-2062Multiple SQL injection vulnerabilities in ActiveBuyAndSell 6.2 allow remote attackers to execute arbitrary SQL commands via the catid parameter to (1) default.asp or (2) buyersend.asp, (3) Administ...7.5
  7. CVE-2005-2063Multiple cross-site scripting (XSS) vulnerabilities in ActiveBuyAndSell 6.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Title parameter to sendpassword.asp or (2) Keyw...4.3
  8. CVE-2005-1030Multiple cross-site scripting (XSS) vulnerabilities in Active Auction House allow remote attackers to inject arbitrary web script or HTML via the (1) ReturnURL, (2) password, (3) username parameter...4.3
  9. CVE-2005-1029Multiple SQL injection vulnerabilities in Active Auction House allow remote attackers to execute arbitrary SQL commands via the (1) catid, (2) SortDir, or (3) Sortby parameter to default.asp, (4) i...7.5

The record

Peak rank
#22 in Mar 2007
Busiest month shown
Mar 2007, 4 CVEs
Months with a KEV entry
0 since Apr 2005
Monthly snapshots
4 since 2005
Active-web-softwares's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store