VendorsActivewebsoftwaresactive_web_mail4.0
Vulnerabilities

Activewebsoftwares Active Web Mail 4.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2008-5973
SQL injection vulnerability in login.aspx in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL commands via the password parameter.
Published 2009-01-27 · Modified
7.51 PoCEPSS 0.010
CVE-2008-6873
SQL injection vulnerability in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL commands via the TabOpenQuickTab1 parameter to (1) popaccounts.aspx, (2) addressbook.aspx, and (3) emails.aspx.
Published 2009-07-23 · Modified
7.51 PoCEPSS 0.010