Skip to content
Noroxi

asp-dev records

9 published records for vendor asp-dev.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
6
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    All records

    9 records
    • CVE-2005-4165
      30Monitor

      Multiple SQL injection vulnerabilities in ASP-DEV ASP Resources Forum allow remote attackers to execute arbitrary SQL commands via the (1) f

      HighCVSS 7.5No exploitEPSS 1%

      asp-dev · asp resources forumDec 11, 2005

    • CVE-2012-4061
      30Monitor

      Multiple SQL injection vulnerabilities in ASP-DEv XM Diary allow remote attackers to execute arbitrary SQL commands via the (1) id parameter

      HighCVSS 7.5No exploitEPSS 1%

      asp-dev · xm diaryJul 25, 2012

    • CVE-2012-4060
      30Monitor

      Multiple SQL injection vulnerabilities in ASP-DEv XM Forums RC3 allow remote attackers to execute arbitrary SQL commands via the id paramete

      HighCVSS 7.5Proof of conceptEPSS 1%

      asp-dev · xm forumsJul 25, 2012

    • CVE-2008-5924
      30Monitor

      SQL injection vulnerability in diary_viewC.asp in ASP-DEv XM Events Diary allows remote attackers to execute arbitrary SQL commands via the

      HighCVSS 7.5No exploitEPSS 1%

      asp-dev · xm events diaryJan 21, 2009

    • CVE-2008-5926
      30Monitor

      Multiple SQL injection vulnerabilities in login.asp in ASP-DEv Internal E-Mail System allow remote attackers to execute arbitrary SQL comman

      HighCVSS 7.5Proof of conceptEPSS 1%

      asp-dev · internal e-mail systemJan 21, 2009

    • CVE-2008-5923
      30Monitor

      SQL injection vulnerability in default.asp in ASP-DEv XM Events Diary allows remote attackers to execute arbitrary SQL commands the cat para

      HighCVSS 7.5Proof of conceptEPSS 1%

      asp-dev · xm events diaryJan 21, 2009

    • CVE-2008-5925
      20Monitor

      ASP-DEv XM Events Diary stores sensitive information under the web root with insufficient access control, which allows remote attackers to d

      MediumCVSS 5.0No exploitEPSS 1%

      asp-dev · xm events diaryJan 21, 2009

    • CVE-2005-1008
      18Monitor

      Cross-site scripting (XSS) vulnerability in posts.asp for ASP-DEv XM Forum RC3 allows remote attackers to inject arbitrary web script or HTM

      MediumCVSS 4.3Proof of conceptEPSS 3%

      asp-dev · xm forumMay 2, 2005

    • CVE-2005-4256
      17Monitor

      Cross-site scripting (XSS) vulnerability in forum.asp in ASP-DEV XM Forum RC3 allows remote attackers to inject arbitrary web script or HTML

      MediumCVSS 4.3Proof of conceptEPSS 2%

      asp-dev · xm forumDec 15, 2005