asp-dev kayıtları
asp-dev üreticisine ait 9 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 6
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')5
- CWE-264 Permissions, Privileges, and Access Controls1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
9 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
30İzleyin | CVE-2005-4165İstismar yok | Multiple SQL injection vulnerabilities in ASP-DEV ASP Resources Forum allow remote attackers to execute arbitrary SQL commands via the (1) fasp-dev · asp resources forum | Yüksek7,5 | — | %1,5 | 11 Ara 2005 |
30İzleyin | CVE-2012-4061İstismar yok | Multiple SQL injection vulnerabilities in ASP-DEv XM Diary allow remote attackers to execute arbitrary SQL commands via the (1) id parameterasp-dev · xm diary · CWE-89 | Yüksek7,5 | — | %1,2 | 25 Tem 2012 |
30İzleyin | CVE-2012-4060Kavram kanıtı | Multiple SQL injection vulnerabilities in ASP-DEv XM Forums RC3 allow remote attackers to execute arbitrary SQL commands via the id parameteasp-dev · xm forums · CWE-89 | Yüksek7,5 | — | %1,1 | 25 Tem 2012 |
30İzleyin | CVE-2008-5924İstismar yok | SQL injection vulnerability in diary_viewC.asp in ASP-DEv XM Events Diary allows remote attackers to execute arbitrary SQL commands via the asp-dev · xm events diary · CWE-89 | Yüksek7,5 | — | %1,0 | 21 Oca 2009 |
30İzleyin | CVE-2008-5926Kavram kanıtı | Multiple SQL injection vulnerabilities in login.asp in ASP-DEv Internal E-Mail System allow remote attackers to execute arbitrary SQL commanasp-dev · internal e-mail system · CWE-89 | Yüksek7,5 | — | %1,0 | 21 Oca 2009 |
30İzleyin | CVE-2008-5923Kavram kanıtı | SQL injection vulnerability in default.asp in ASP-DEv XM Events Diary allows remote attackers to execute arbitrary SQL commands the cat paraasp-dev · xm events diary · CWE-89 | Yüksek7,5 | — | %1,0 | 21 Oca 2009 |
20İzleyin | CVE-2008-5925İstismar yok | ASP-DEv XM Events Diary stores sensitive information under the web root with insufficient access control, which allows remote attackers to dasp-dev · xm events diary · CWE-264 | Orta5,0 | — | %1,2 | 21 Oca 2009 |
18İzleyin | CVE-2005-1008Kavram kanıtı | Cross-site scripting (XSS) vulnerability in posts.asp for ASP-DEv XM Forum RC3 allows remote attackers to inject arbitrary web script or HTMasp-dev · xm forum | Orta4,3 | — | %2,7 | 2 May 2005 |
17İzleyin | CVE-2005-4256Kavram kanıtı | Cross-site scripting (XSS) vulnerability in forum.asp in ASP-DEV XM Forum RC3 allows remote attackers to inject arbitrary web script or HTMLasp-dev · xm forum | Orta4,3 | — | %1,5 | 15 Ara 2005 |
- CVE-2005-416530İzleyin
Multiple SQL injection vulnerabilities in ASP-DEV ASP Resources Forum allow remote attackers to execute arbitrary SQL commands via the (1) f
YüksekCVSS 7,5İstismar yokEPSS %1asp-dev · asp resources forum11 Ara 2005
- CVE-2012-406130İzleyin
Multiple SQL injection vulnerabilities in ASP-DEv XM Diary allow remote attackers to execute arbitrary SQL commands via the (1) id parameter
YüksekCVSS 7,5İstismar yokEPSS %1asp-dev · xm diary25 Tem 2012
- CVE-2012-406030İzleyin
Multiple SQL injection vulnerabilities in ASP-DEv XM Forums RC3 allow remote attackers to execute arbitrary SQL commands via the id paramete
YüksekCVSS 7,5Kavram kanıtıEPSS %1asp-dev · xm forums25 Tem 2012
- CVE-2008-592430İzleyin
SQL injection vulnerability in diary_viewC.asp in ASP-DEv XM Events Diary allows remote attackers to execute arbitrary SQL commands via the
YüksekCVSS 7,5İstismar yokEPSS %1asp-dev · xm events diary21 Oca 2009
- CVE-2008-592630İzleyin
Multiple SQL injection vulnerabilities in login.asp in ASP-DEv Internal E-Mail System allow remote attackers to execute arbitrary SQL comman
YüksekCVSS 7,5Kavram kanıtıEPSS %1asp-dev · internal e-mail system21 Oca 2009
- CVE-2008-592330İzleyin
SQL injection vulnerability in default.asp in ASP-DEv XM Events Diary allows remote attackers to execute arbitrary SQL commands the cat para
YüksekCVSS 7,5Kavram kanıtıEPSS %1asp-dev · xm events diary21 Oca 2009
- CVE-2008-592520İzleyin
ASP-DEv XM Events Diary stores sensitive information under the web root with insufficient access control, which allows remote attackers to d
OrtaCVSS 5,0İstismar yokEPSS %1asp-dev · xm events diary21 Oca 2009
- CVE-2005-100818İzleyin
Cross-site scripting (XSS) vulnerability in posts.asp for ASP-DEv XM Forum RC3 allows remote attackers to inject arbitrary web script or HTM
OrtaCVSS 4,3Kavram kanıtıEPSS %3asp-dev · xm forum2 May 2005
- CVE-2005-425617İzleyin
Cross-site scripting (XSS) vulnerability in forum.asp in ASP-DEV XM Forum RC3 allows remote attackers to inject arbitrary web script or HTML
OrtaCVSS 4,3Kavram kanıtıEPSS %2asp-dev · xm forum15 Ara 2005