CVE-2007-1696

Active WEB Softwares Active Newsletter < 4.3 - SQL Injection

Title source: rule

Description

SQL injection vulnerability in ViewNewspapers.asp in Active Newsletter 4.3 and earlier allows remote attackers to execute arbitrary SQL commands via the NewsPaperID parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by ajann · htmlwebappsasp
https://www.exploit-db.com/exploits/3556

Scores

EPSS 0.0255
EPSS Percentile 85.5%

Details

Status published
Products (1)
active_web_softwares/active_newsletter < 4.3
Published Mar 27, 2007
Tracked Since Feb 18, 2026