VendorsAspappsaspportalall versions
Vulnerabilities

Aspapps Aspportal

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2008-5605
Multiple SQL injection vulnerabilities in ASP Portal allow remote attackers to execute arbitrary SQL commands via the (1) ItemID parameter to classifieds.asp and the (2) ID parameter to Events.asp.
Published 2008-12-16 · Modified
7.51 PoCEPSS 0.021
CVE-2008-5562
ASPPortal stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for xportal.mdb.
Published 2008-12-15 · Modified
5.01 PoCEPSS 0.052