SQL injection vulnerability in activeWeb contentserver before 5.6.2964 allows remote authenticated users with edit permission to execute arbitrary SQL commands via the id parameter to admin/picture/picture_real_edit.asp, and probably other unspecified vectors.
References
Configurations
History
No history.
Information
Published : 2007-07-15 23:30
Updated : 2018-10-16 16:46
NVD link : CVE-2007-3013
Mitre link : CVE-2007-3013
CVE.ORG link : CVE-2007-3013
JSON object : View
Products Affected
activeweb
- contentserver
CWE