Back to Database
Status published
High
CVE-2007-1696
SQL injection vulnerability in ViewNewspapers.asp in Active Newsletter 4.3 and...
Vulnerability Description
SQL injection vulnerability in ViewNewspapers.asp in Active Newsletter 4.3 and earlier allows remote attackers to execute arbitrary SQL commands via the NewsPaperID parameter.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2007-1696
Credits & Attribution
No credits recorded in the NVD database.
References
More from active web softwares
View All →CVE-2008-5959
Multiple SQL injection vulnerabilities in start.asp in Active Test 2.1...
High
7.5
CVE-2007-1712
SQL injection vulnerability in default.asp in ActiveWebSoftwares Active Auction Pro...
High
7.5
CVE-2007-1630
SQL injection vulnerability in default.asp in ActiveWebSoftwares Active Link Engine...
High
7.5
CVE-2007-1629
SQL injection vulnerability in default.asp in ActiveWebSoftwares Active Photo Gallery...
High
7.5
CVE-2005-2063
Multiple cross-site scripting (XSS) vulnerabilities in ActiveBuyAndSell 6.2 allow remote...
Medium
4.3
Affected Vendor
active web softwares
View all reports →Affected Software
active newsletter
Vulnerable Versions:
0
Timeline
Official Publish:
March 27th, 2007
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.