Skip to content
Noroxi

fipsasp records

12 published records for vendor fipsasp.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
8
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    All records

    12 records
    • CVE-2006-6117
      30Monitor

      SQL injection vulnerability in index1.asp in fipsGallery 1.5 and earlier allows remote attackers to execute arbitrary SQL commands via the w

      HighCVSS 7.5Proof of conceptEPSS 1%

      fipsasp · fipsgalleryNov 26, 2006

    • CVE-2006-6115
      30Monitor

      SQL injection vulnerability in index.asp in fipsCMS 4.5 and earlier allows remote attackers to execute arbitrary SQL commands via the fid pa

      HighCVSS 7.5Proof of conceptEPSS 1%

      fipsasp · fipscmsNov 26, 2006

    • CVE-2006-6116
      30Monitor

      SQL injection vulnerability in default2.asp in fipsForum 2.6 and earlier allows remote attackers to execute arbitrary SQL commands via the k

      HighCVSS 7.5Proof of conceptEPSS 1%

      fipsasp · fipsforumNov 26, 2006

    • CVE-2006-6243
      30Monitor

      Multiple SQL injection vulnerabilities in index.asp in FipsSHOP allow remote attackers to execute arbitrary SQL commands via the (1) cat or

      HighCVSS 7.5Proof of conceptEPSS 1%

      fipsasp · fipsshopDec 4, 2006

    • CVE-2008-3417
      30Monitor

      SQL injection vulnerability in home/index.asp in fipsCMS light 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via

      HighCVSS 7.5Proof of conceptEPSS 1%

      fipsasp · fipscms lightJul 31, 2008

    • CVE-2007-2561
      30Monitor

      SQL injection vulnerability in index.asp in fipsCMS 2.1 allows remote attackers to execute arbitrary SQL commands via the pid parameter, a d

      HighCVSS 7.5Proof of conceptEPSS 1%

      fipsasp · fipscmsMay 9, 2007

    • CVE-2008-2124
      30Monitor

      SQL injection vulnerability in modules/print.asp in fipsASP fipsCMS allows remote attackers to execute arbitrary SQL commands via the lg par

      HighCVSS 7.5Proof of conceptEPSS 1%

      fipsasp · fipscmsMay 9, 2008

    • CVE-2008-3722
      30Monitor

      SQL injection vulnerability in forum/neu.asp in fipsCMS 2.1 allows remote attackers to execute arbitrary SQL commands via the kat parameter.

      HighCVSS 7.5Proof of conceptEPSS 1%

      fipsasp · fipscmsAug 20, 2008

    • CVE-2006-3022
      28Monitor

      Cross-site scripting (XSS) vulnerability in zoom.php in fipsGallery 1.5 and earlier allows remote attackers to inject arbitrary web script o

      MediumCVSS 6.8No exploitEPSS 2%

      fipsasp · fipsgalleryJun 15, 2006

    • CVE-2009-2022
      22Monitor

      fipsCMS Light 2.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to downloa

      MediumCVSS 5.0Proof of conceptEPSS 5%

      fipsasp · fipscms lightJun 9, 2009

    • CVE-2010-0765
      21Monitor

      fipsForum 2.6 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a

      MediumCVSS 5.0Proof of conceptEPSS 2%

      fipsasp · fipsforumMar 2, 2010

    • CVE-2006-3031
      17Monitor

      Multiple cross-site scripting (XSS) vulnerabilities in index.asp in fipsCMS 4.5 and earlier allow remote attackers to inject arbitrary web s

      MediumCVSS 4.3No exploitEPSS 1%

      fipsasp · fipscmsJun 15, 2006