Aspjar Guestbook
by Aspjar
CVEs (4)
| CVE | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2005-0424 | 0.00 | — | 0.00 | Apr 27, 2005 | Unknown vulnerability in the delete.asp program in certain versions of ASPjar Guestbook allows remote attackers to delete messages. NOTE: there is insufficient information to know if this is the same issue as CVE-2002-1730. | ||
| CVE-2005-0423 | 0.00 | — | 0.00 | Apr 27, 2005 | SQL injection vulnerability in login.asp in ASPjar Guestbook allows remote attackers to execute arbitrary SQL commands via the password field. | ||
| CVE-2002-1730 | 0.00 | — | 0.00 | Dec 31, 2002 | ASPjar Guestbook 1.00 allows remote attackers to delete arbitrary messages accessing the delete.asp administrative script with certain cookie values set to "true". | ||
| CVE-2002-1729 | 0.00 | — | 0.01 | Dec 31, 2002 | Cross-site scripting vulnerability (XSS) in ASPjar Guestbook 1.00 allows remote attackers to execute arbitrary script as other users via the "web site" parameter in a guestbook message. |