CVE Tools

Iatek

11 CVEs tracked since 2005. Since Apr 2005, none of them reached CISA KEV.

Iatek CVEs per month

Apr 2005 to Mar 2008. Point at a month, or focus the strip and use the arrow keys.
Iatek CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2005-0440
2005-0520
2005-06null or fewer
2005-07null or fewer
2005-08null or fewer
2005-09null or fewer
2005-10null or fewer
2005-11null or fewer
2005-1240
2006-01null or fewer
2006-02null or fewer
2006-03null or fewer
2006-04null or fewer
2006-05null or fewer
2006-06null or fewer
2006-07null or fewer
2006-08null or fewer
2006-09null or fewer
2006-10null or fewer
2006-11null or fewer
2006-12null or fewer
2007-01null or fewer
2007-02null or fewer
2007-03null or fewer
2007-04null or fewer
2007-05null or fewer
2007-06null or fewer
2007-07null or fewer
2007-08null or fewer
2007-09null or fewer
2007-10null or fewer
2007-11null or fewer
2007-12null or fewer
2008-01null or fewer
2008-02null or fewer
2008-0310

Products

The products that kept showing up in Iatek's monthly top three, with their CVEs summed over those months.

  1. Portalapp53 months
  2. Siteenable21 month
  3. Aspapp11 month
  4. Intranetapp11 month
  5. Projectapp11 month

Latest CVEs

The 11 most recently published vulnerabilities affecting Iatek.

  1. CVE-2008-1430SQL injection vulnerability in links.asp in ASPapp allows remote attackers to execute arbitrary SQL commands via the CatId parameter.7.5
  2. CVE-2005-4482Cross-site scripting (XSS) vulnerability in login.asp in PortalApp 3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the ret_page parameter.6.8
  3. CVE-2005-4483Cross-site scripting (XSS) vulnerability in login.asp in SiteEnable 3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the ret_page parameter.4.3
  4. CVE-2005-4485Multiple cross-site scripting (XSS) vulnerabilities in ProjectApp 3.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the keywords parameter to (1) forums.asp, (2) sea...4.3
  5. CVE-2005-4484Multiple cross-site scripting (XSS) vulnerabilities in IntranetApp 3.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) ret_page parameter to login.asp or the (...4.3
  6. CVE-2004-1786PortalApp places user credentials under the web root with insufficient access control, which allows remote attackers to gain access to sensitive information via a direct request to 8275.mdb.5.0
  7. CVE-2002-1659user_profile.asp in PortalApp 2.2 allows local users to gain privileges by modifying the user_id variable.10.0
  8. CVE-2005-1012Cross-site scripting (XSS) vulnerability in Iatek SiteEnable allows remote attackers to inject arbitrary web script or HTML via (1) the contenttype parameter to content.asp, (2) the title, or (3) t...4.3
  9. CVE-2005-1011SQL injection vulnerability in content.asp in SiteEnable allows remote attackers to execute arbitrary SQL commands via the sortby parameter.7.5
  10. CVE-2005-0949Multiple cross-site scripting (XSS) vulnerabilities in content.asp in Iatek PortalApp allow remote attackers to inject arbitrary web script or HTML via the (1) contenttype or (2) keywords parameter.4.3
  11. CVE-2005-0948SQL injection vulnerability in ad_click.asp for PortalApp allows remote attackers to execute arbitrary SQL commands via the banner_id parameter.7.5

The record

Peak rank
#21 in Dec 2005
Busiest month shown
Apr 2005, 4 CVEs
Months with a KEV entry
0 since Apr 2005
Monthly snapshots
4 since 2005
Iatek's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store