Перейти к содержимому
Noroxi

Записи virtual programming

10 опубликованных записей вендора virtual programming.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
5
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

    Столбик: всего · тёмная часть: CISA KEV.

    Повторяющиеся классы

      Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

      CWE

      Все записи

      10 записей
      • CVE-2003-0560
        41В плане

        SQL injection vulnerability in shopexd.asp for VP-ASP allows remote attackers to gain administrator privileges via the id parameter.

        КритическаяCVSS 10,0Proof of conceptEPSS 3 %

        virtual programming · vp-asp18 авг. 2003 г.

      • CVE-2002-1919
        30Наблюдать

        SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and bypass authenticati

        ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

        virtual programming · vp-asp31 дек. 2002 г.

      • CVE-2006-2263
        30Наблюдать

        SQL injection vulnerability in shopcurrency.asp in VP-ASP 6.00 allows remote attackers to execute arbitrary SQL commands via the cid paramet

        ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

        virtual programming · vp-asp9 мая 2006 г.

      • CVE-2004-2413
        30Наблюдать

        SQL injection vulnerability in VP-ASP Shopping Cart 4.0 through 5.0 allows remote attackers to execute arbitrary SQL commands via the (1) Pr

        ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

        virtual programming · vp-asp31 дек. 2004 г.

      • CVE-2004-2412
        30Наблюдать

        Multiple SQL injection vulnerabilities in VP-ASP Shopping Cart 4.0 through 5.0 allow remote attackers to execute arbitrary SQL commands via

        ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

        virtual programming · vp-asp31 дек. 2004 г.

      • CVE-2007-0224
        30Наблюдать

        SQL injection vulnerability in shopgiftregsearch.asp in VP-ASP Shopping Cart 6.09 and earlier allows remote attackers to execute arbitrary S

        ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

        virtual programming · vp-asp12 янв. 2007 г.

      • CVE-2007-0225
        28Наблюдать

        Cross-site scripting (XSS) vulnerability in shopcustadmin.asp in VP-ASP Shopping Cart 6.09 and earlier allows remote attackers to inject arb

        СредняяCVSS 6,8Proof of conceptEPSS 2 %

        virtual programming · vp-asp12 янв. 2007 г.

      • CVE-2004-2164
        21Наблюдать

        shoprestoreorder.asp in VP-ASP 5.0 does not close the database connection when a user restores a previous order, which allows remote attacke

        СредняяCVSS 5,0Эксплойта нетEPSS 2 %

        virtual programming · vp-asp31 дек. 2004 г.

      • CVE-2004-2411
        18Наблюдать

        The CleanseMessage function in shop$db.asp for VP-ASP Shopping Cart 4.0 through 5.0 does not sufficiently cleanse inputs, which allows remot

        СредняяCVSS 4,3Proof of conceptEPSS 2 %

        virtual programming · vp-asp31 дек. 2004 г.

      • CVE-2005-3685
        18Наблюдать

        Cross-site scripting (XSS) vulnerability in shopadmin.asp in VP-ASP Shopping Cart 5.50 allows remote attackers to inject arbitrary web scrip

        СредняяCVSS 4,3Proof of conceptEPSS 2 %

        virtual programming · vp-asp18 нояб. 2005 г.