CVE Tools

Asp-nuke

13 CVEs tracked since 2002. Since Jun 2002, none of them reached CISA KEV.

Asp-nuke CVEs per month

Jun 2002 to May 2007. Point at a month, or focus the strip and use the arrow keys.
Asp-nuke CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2002-0650
2002-07null or fewer
2002-08null or fewer
2002-09null or fewer
2002-10null or fewer
2002-11null or fewer
2002-12null or fewer
2003-01null or fewer
2003-02null or fewer
2003-03null or fewer
2003-04null or fewer
2003-05null or fewer
2003-06null or fewer
2003-07null or fewer
2003-08null or fewer
2003-09null or fewer
2003-10null or fewer
2003-11null or fewer
2003-12null or fewer
2004-01null or fewer
2004-02null or fewer
2004-03null or fewer
2004-04null or fewer
2004-05null or fewer
2004-06null or fewer
2004-07null or fewer
2004-08null or fewer
2004-09null or fewer
2004-10null or fewer
2004-11null or fewer
2004-12null or fewer
2005-01null or fewer
2005-02null or fewer
2005-03null or fewer
2005-04null or fewer
2005-0510
2005-0640
2005-07null or fewer
2005-08null or fewer
2005-09null or fewer
2005-10null or fewer
2005-11null or fewer
2005-12null or fewer
2006-01null or fewer
2006-02null or fewer
2006-03null or fewer
2006-04null or fewer
2006-05null or fewer
2006-06null or fewer
2006-07null or fewer
2006-08null or fewer
2006-09null or fewer
2006-10null or fewer
2006-1110
2006-12null or fewer
2007-01null or fewer
2007-02null or fewer
2007-0310
2007-04null or fewer
2007-0510

Products

The products that kept showing up in Asp-nuke's monthly top three, with their CVEs summed over those months.

  1. Asp-nuke136 months

Latest CVEs

The 13 most recently published vulnerabilities affecting Asp-nuke.

  1. CVE-2007-2892Cross-site scripting (XSS) vulnerability in news.asp in ASP-Nuke 2.0.7 allows remote attackers to inject arbitrary web script or HTML via the id parameter. NOTE: the provenance of this information...4.3
  2. CVE-2006-7152default.asp in ASP-Nuke Community 1.5 and earlier allows remote attackers to gain privileges by setting certain pseudo cookie values.8.5
  3. CVE-2006-6070SQL injection vulnerability in module/account/register/register.asp in ASP Nuke 0.80 and earlier allows remote attackers to execute arbitrary SQL commands via the StateCode parameter.7.5
  4. CVE-2005-2064Multiple cross-site scripting vulnerabilities in ASP Nuke 0.80 allow remote attackers to inject arbitrary web script or HTML via the (1) email parameter to forgot_password.asp, or the (2) FirstName...5.0
  5. CVE-2005-2067SQL injection vulnerability in article.asp in unknown versions of aspnuke allows remote attackers to execute arbitrary SQL commands via the articleid parameter.7.5
  6. CVE-2005-2066SQL injection vulnerability in comment_post.asp in ASP Nuke 0.80 allows remote attackers to execute arbitrary SQL statements via the TaskID parameter.7.5
  7. CVE-2005-2065HTTP response splitting vulnerability in language_select.asp in ASP Nuke 0.80 allows remote attackers to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the LangCode parame...5.0
  8. CVE-2004-1788ASP-Nuke 1.3 and earlier places user credentials under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to ...5.0
  9. CVE-2002-0520Cross-site scripting vulnerability in functions-inc.asp for ASP-Nuke RC1 allows remote attackers to execute script as other ASP-Nuke users by embedding it within an IMG tag.7.5
  10. CVE-2002-0523ASP-Nuke RC2 and earlier allows remote attackers to list all logged-in users by submitting an invalid "pseudo" cookie.5.0
  11. CVE-2002-0522ASP-Nuke RC2 and earlier allows remote attackers to bypass authentication and gain privileges by modifying the "pseudo" cookie.7.5
  12. CVE-2002-0524ASP-Nuke RC2 and earlier allows remote attackers to determine the absolute path of the server by (1) calling database-inc.asp with incorrect cookies, or (2) calling Post.asp with certain arguments,...5.0
  13. CVE-2002-0521Cross-site scripting vulnerabilities in ASP-Nuke RC2 and earlier allow remote attackers to execute script or gain privileges as other ASP-Nuke users via script in (1) the name parameter in download...5.1

The record

Peak rank
#13 in Jun 2002
Busiest month shown
Jun 2002, 5 CVEs
Months with a KEV entry
0 since Jun 2002
Monthly snapshots
6 since 2002
Asp-nuke's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store