CVE

Id
36075  
CVE No.
CVE-2008-5958  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in Active Test 2.1 allow remote attackers to execute arbitrary SQL commands via the QuizID parameter to (1) questions.asp, (2) importquestions.asp, and (3) quiztakers.asp.  
Phase
Assigned (20090123)  
Votes
None (candidate not yet proposed)  
Comments