Skip to content
Noroxi

virtual programming records

10 published records for vendor virtual programming.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
5
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      All records

      10 records
      • SQL injection vulnerability in shopexd.asp for VP-ASP allows remote attackers to gain administrator privileges via the id parameter.

        CriticalCVSS 10.0Proof of conceptEPSS 3%

        virtual programming · vp-aspAug 18, 2003

      • CVE-2002-1919
        30Monitor

        SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and bypass authenticati

        HighCVSS 7.5No exploitEPSS 2%

        virtual programming · vp-aspDec 31, 2002

      • CVE-2006-2263
        30Monitor

        SQL injection vulnerability in shopcurrency.asp in VP-ASP 6.00 allows remote attackers to execute arbitrary SQL commands via the cid paramet

        HighCVSS 7.5Proof of conceptEPSS 1%

        virtual programming · vp-aspMay 9, 2006

      • CVE-2004-2413
        30Monitor

        SQL injection vulnerability in VP-ASP Shopping Cart 4.0 through 5.0 allows remote attackers to execute arbitrary SQL commands via the (1) Pr

        HighCVSS 7.5Proof of conceptEPSS 1%

        virtual programming · vp-aspDec 31, 2004

      • CVE-2004-2412
        30Monitor

        Multiple SQL injection vulnerabilities in VP-ASP Shopping Cart 4.0 through 5.0 allow remote attackers to execute arbitrary SQL commands via

        HighCVSS 7.5No exploitEPSS 1%

        virtual programming · vp-aspDec 31, 2004

      • CVE-2007-0224
        30Monitor

        SQL injection vulnerability in shopgiftregsearch.asp in VP-ASP Shopping Cart 6.09 and earlier allows remote attackers to execute arbitrary S

        HighCVSS 7.5Proof of conceptEPSS 1%

        virtual programming · vp-aspJan 12, 2007

      • CVE-2007-0225
        28Monitor

        Cross-site scripting (XSS) vulnerability in shopcustadmin.asp in VP-ASP Shopping Cart 6.09 and earlier allows remote attackers to inject arb

        MediumCVSS 6.8Proof of conceptEPSS 2%

        virtual programming · vp-aspJan 12, 2007

      • CVE-2004-2164
        21Monitor

        shoprestoreorder.asp in VP-ASP 5.0 does not close the database connection when a user restores a previous order, which allows remote attacke

        MediumCVSS 5.0No exploitEPSS 2%

        virtual programming · vp-aspDec 31, 2004

      • CVE-2004-2411
        18Monitor

        The CleanseMessage function in shop$db.asp for VP-ASP Shopping Cart 4.0 through 5.0 does not sufficiently cleanse inputs, which allows remot

        MediumCVSS 4.3Proof of conceptEPSS 2%

        virtual programming · vp-aspDec 31, 2004

      • CVE-2005-3685
        18Monitor

        Cross-site scripting (XSS) vulnerability in shopadmin.asp in VP-ASP Shopping Cart 5.50 allows remote attackers to inject arbitrary web scrip

        MediumCVSS 4.3Proof of conceptEPSS 2%

        virtual programming · vp-aspNov 18, 2005