CVE

Id
36091  
CVE No.
CVE-2008-5974  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in login.aspx in Active Price Comparison 4.0 allow remote attackers to execute arbitrary SQL commands via the (1) password and (2) username fields.  
Phase
Assigned (20090126)  
Votes
None (candidate not yet proposed)  
Comments