CVE-2008-5638

Publication date

2008-12-17 17:00:00

Family

mitre

State

PUBLISHED

Description

Multiple SQL injection vulnerabilities in Active Price Comparison 4 allow remote attackers to execute arbitrary SQL commands via the (1) ProductID parameter to reviews.aspx or the (2) linkid parameter to links.asp.