CVE Tools

Aspindir

34 CVEs tracked since 2006. Since Sep 2006, none of them reached CISA KEV.

Aspindir CVEs per month

Sep 2006 to Oct 2011. Point at a month, or focus the strip and use the arrow keys.
Aspindir CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2006-0910
2006-10null or fewer
2006-11null or fewer
2006-1210
2007-01null or fewer
2007-02null or fewer
2007-0310
2007-04null or fewer
2007-05null or fewer
2007-06null or fewer
2007-0720
2007-0830
2007-09null or fewer
2007-10null or fewer
2007-11null or fewer
2007-12null or fewer
2008-01null or fewer
2008-02null or fewer
2008-03null or fewer
2008-0410
2008-0540
2008-0630
2008-07null or fewer
2008-0810
2008-0910
2008-1020
2008-1110
2008-1210
2009-01null or fewer
2009-0210
2009-03null or fewer
2009-0420
2009-05null or fewer
2009-06null or fewer
2009-07null or fewer
2009-08null or fewer
2009-09null or fewer
2009-10null or fewer
2009-11null or fewer
2009-12null or fewer
2010-0110
2010-02null or fewer
2010-0320
2010-0410
2010-0510
2010-06null or fewer
2010-07null or fewer
2010-08null or fewer
2010-09null or fewer
2010-10null or fewer
2010-1120
2010-12null or fewer
2011-01null or fewer
2011-02null or fewer
2011-03null or fewer
2011-04null or fewer
2011-05null or fewer
2011-06null or fewer
2011-07null or fewer
2011-08null or fewer
2011-09null or fewer
2011-1020

Products

The products that kept showing up in Aspindir's monthly top three, with their CVEs summed over those months.

  1. Angelo-emlak32 months
  2. Shibby Shop31 month
  3. Xweblog32 months
  4. Husrevforum21 month
  5. Kisisel Radyo Script21 month
  6. Philboard22 months
  7. Text File Search21 month
  8. Aspee Ziyaretci Defteri11 month
  9. Ayco Okul Portali11 month
  10. Batmanportal11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Aspindir.

  1. CVE-2010-4856SQL injection vulnerability in arsiv.asp in xWeblog 2.2 allows remote attackers to execute arbitrary SQL commands via the tarih parameter.7.5
  2. CVE-2010-4855SQL injection vulnerability in oku.asp in xWeblog 2.2 allows remote attackers to execute arbitrary SQL commands via the makale_id parameter.7.5
  3. CVE-2010-4144SQL injection vulnerability in radyo.asp in Kisisel Radyo Script allows remote attackers to execute arbitrary SQL commands via the Id parameter.7.5
  4. CVE-2010-4145Kisisel Radyo Script stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for sevvo/eco23.mdb.5.0
  5. CVE-2010-1736KrM Haber 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for d_atabase/Krmdb.mdb.5.0
  6. CVE-2009-4820Angelo-Emlak 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for veribaze/angelo.mdb.5.0
  7. CVE-2010-1116LookMer Music Portal stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for dbmdb/LookMerSar...5.0
  8. CVE-2010-1064Erolife AjxGaleri VT stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/ajxgaleri.mdb.5.0
  9. CVE-2009-4585UranyumSoft Listing Service stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for database/...5.0
  10. CVE-2008-6640Multiple SQL injection vulnerabilities in BatmanPorTaL allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) uyeadmin.asp and (2) profil.asp. NOTE: the provenance of...7.5
  11. CVE-2008-6641Multiple SQL injection vulnerabilities in Shader TV (Beta) allow remote authenticated administrators to execute arbitrary SQL commands via the sid parameter to (1) kanal.asp, (2) google.asp, and (3...6.5
  12. CVE-2009-0447Multiple SQL injection vulnerabilities in default.asp in MyDesign Sayac 2.0 allow remote attackers to execute arbitrary SQL commands via (1) the user parameter (aka UserName field) or (2) the pass ...7.5
  13. CVE-2008-5707SQL injection vulnerability in urunler.asp in Iltaweb Alisveris Sistemi allows remote attackers to execute arbitrary SQL commands via the catno parameter.7.5
  14. CVE-2008-5057SQL injection vulnerability in film.asp in Yigit Aybuga Dizi Portali allows remote attackers to execute arbitrary SQL commands via the film parameter. NOTE: the provenance of this information is u...7.5
  15. CVE-2008-4573SQL injection vulnerability in kategori.asp in MunzurSoft Wep Portal W3 allows remote attackers to execute arbitrary SQL commands via the kat parameter.7.5

The record

Peak rank
#14 in May 2008
Busiest month shown
May 2008, 4 CVEs
Months with a KEV entry
0 since Sep 2006
Monthly snapshots
21 since 2006
Aspindir's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store