Filtered by vendor Aspbb
                         Subscriptions
                    
                    
                
                        Filtered by product Aspbb
                         Subscriptions
                    
                    
                
                    Total
                    4 CVE
                
            | CVE | Vendors | Products | Updated | CVSS v3.1 | 
|---|---|---|---|---|
| CVE-2007-0075 | 1 Aspbb | 1 Aspbb | 2025-04-09 | N/A | 
| AspBB stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user passwords via a direct request for db/aspbb.mdb. | ||||
| CVE-2005-4259 | 1 Aspbb | 1 Aspbb | 2025-04-03 | N/A | 
| Multiple SQL injection vulnerabilities in ASPBB 0.4 allow remote attackers to execute arbitrary SQL commands via the (1) TID parameter in topic.asp, (2) FORUM_ID parameter in forum.asp, and (3) PROFILE_ID parameter in profile.asp. NOTE: the provenance of this issue is unknown; the details are obtained solely from the BID. | ||||
| CVE-2006-2497 | 1 Aspbb | 1 Aspbb | 2025-04-03 | N/A | 
| Multiple cross-site scripting (XSS) vulnerabilities in AspBB 0.5.2 allow remote attackers to inject arbitrary web script or HTML via the (1) action parameter to default.asp or (2) get parameter to profile.asp. | ||||
| CVE-2006-2648 | 1 Aspbb | 1 Aspbb | 2025-04-03 | N/A | 
| Cross-site scripting (XSS) vulnerability in perform_search.asp for ASPBB 0.52 and earlier allows remote attackers to inject arbitrary HTML or web script via the search parameter. | ||||
                            
                                
                                
                                    Page 1 of 1.