Vulnerabilities > Aspjar

DATE CVE VULNERABILITY TITLE RISK
2005-04-27 CVE-2005-0424 Remote vulnerability in Aspjar Guestbook 1.0
Unknown vulnerability in the delete.asp program in certain versions of ASPjar Guestbook allows remote attackers to delete messages.
network
low complexity
aspjar
5.0
2005-04-27 CVE-2005-0423 Remote vulnerability in Aspjar Guestbook 1.0
SQL injection vulnerability in login.asp in ASPjar Guestbook allows remote attackers to execute arbitrary SQL commands via the password field.
network
low complexity
aspjar
5.0
2002-12-31 CVE-2002-1730 HTML Injection vulnerability in Aspjar Guestbook 1.0
ASPjar Guestbook 1.00 allows remote attackers to delete arbitrary messages accessing the delete.asp administrative script with certain cookie values set to "true".
network
low complexity
aspjar
5.0
2002-12-31 CVE-2002-1729 HTML Injection vulnerability in Aspjar Guestbook 1.0
Cross-site scripting vulnerability (XSS) in ASPjar Guestbook 1.00 allows remote attackers to execute arbitrary script as other users via the "web site" parameter in a guestbook message.
network
aspjar
6.8