İçeriğe atla
Noroxi

virtual programming kayıtları

virtual programming üreticisine ait 10 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
5
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

    Çubuk: toplam · koyu kısım: CISA KEV.

    Tekrar eden sınıflar

      Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.

      CWE

      Tüm kayıtlar

      10 kayıt
      • CVE-2003-0560
        41Planlayın

        SQL injection vulnerability in shopexd.asp for VP-ASP allows remote attackers to gain administrator privileges via the id parameter.

        KritikCVSS 10,0Kavram kanıtıEPSS %3

        virtual programming · vp-asp18 Ağu 2003

      • CVE-2002-1919
        30İzleyin

        SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and bypass authenticati

        YüksekCVSS 7,5İstismar yokEPSS %2

        virtual programming · vp-asp31 Ara 2002

      • CVE-2006-2263
        30İzleyin

        SQL injection vulnerability in shopcurrency.asp in VP-ASP 6.00 allows remote attackers to execute arbitrary SQL commands via the cid paramet

        YüksekCVSS 7,5Kavram kanıtıEPSS %1

        virtual programming · vp-asp9 May 2006

      • CVE-2004-2413
        30İzleyin

        SQL injection vulnerability in VP-ASP Shopping Cart 4.0 through 5.0 allows remote attackers to execute arbitrary SQL commands via the (1) Pr

        YüksekCVSS 7,5Kavram kanıtıEPSS %1

        virtual programming · vp-asp31 Ara 2004

      • CVE-2004-2412
        30İzleyin

        Multiple SQL injection vulnerabilities in VP-ASP Shopping Cart 4.0 through 5.0 allow remote attackers to execute arbitrary SQL commands via

        YüksekCVSS 7,5İstismar yokEPSS %1

        virtual programming · vp-asp31 Ara 2004

      • CVE-2007-0224
        30İzleyin

        SQL injection vulnerability in shopgiftregsearch.asp in VP-ASP Shopping Cart 6.09 and earlier allows remote attackers to execute arbitrary S

        YüksekCVSS 7,5Kavram kanıtıEPSS %1

        virtual programming · vp-asp12 Oca 2007

      • CVE-2007-0225
        28İzleyin

        Cross-site scripting (XSS) vulnerability in shopcustadmin.asp in VP-ASP Shopping Cart 6.09 and earlier allows remote attackers to inject arb

        OrtaCVSS 6,8Kavram kanıtıEPSS %2

        virtual programming · vp-asp12 Oca 2007

      • CVE-2004-2164
        21İzleyin

        shoprestoreorder.asp in VP-ASP 5.0 does not close the database connection when a user restores a previous order, which allows remote attacke

        OrtaCVSS 5,0İstismar yokEPSS %2

        virtual programming · vp-asp31 Ara 2004

      • CVE-2004-2411
        18İzleyin

        The CleanseMessage function in shop$db.asp for VP-ASP Shopping Cart 4.0 through 5.0 does not sufficiently cleanse inputs, which allows remot

        OrtaCVSS 4,3Kavram kanıtıEPSS %2

        virtual programming · vp-asp31 Ara 2004

      • CVE-2005-3685
        18İzleyin

        Cross-site scripting (XSS) vulnerability in shopadmin.asp in VP-ASP Shopping Cart 5.50 allows remote attackers to inject arbitrary web scrip

        OrtaCVSS 4,3Kavram kanıtıEPSS %2

        virtual programming · vp-asp18 Kas 2005