aspbb CVE Vulnerabilities & CVE List (4)

Products (CPE): — CVEs: 4

aspbb vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to aspbb, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 14 of 4 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2007-0075 AspBB stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user passwords via a direct request for db/aspbb.mdb. [email protected] 7.5 1.29% 2007-01-05 2026-04-23
CVE-2006-2648 Cross-site scripting (XSS) vulnerability in perform_search.asp for ASPBB 0.52 and earlier allows remote attackers to inject arbitrary HTML or web script via the search parameter. [email protected] 2.6 8.11% 2006-05-30 2026-04-16
CVE-2006-2497 Multiple cross-site scripting (XSS) vulnerabilities in AspBB 0.5.2 allow remote attackers to inject arbitrary web script or HTML via the (1) action parameter to default.asp or (2) get parameter to profile.asp. [email protected] 5.8 1.90% 2006-05-20 2026-04-16
CVE-2005-4259 Multiple SQL injection vulnerabilities in ASPBB 0.4 allow remote attackers to execute arbitrary SQL commands via the (1) TID parameter in topic.asp, (2) FORUM_ID parameter in forum.asp, and (3) PROFILE_ID parameter in profile.asp. NOTE: the provenance of this issue is unknown; the details are obtained solely from the BID. [email protected] 7.5 0.54% 2005-12-15 2026-04-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence