Aimluck develops the Aipo collaboration and portal suite, a modestly deployed groupware platform where its vulnerability profile centers on web-application input handling and concurrency control. The recurring weakness classes—SQL injection, race conditions, and cross-site request forgery—reflect the input validation and state-management challenges common to multi-user web applications; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Aimluck over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2011-1342HIGH SQL injection vulnerability in Aimluck Aipo before 5.1.1, and Aipo for ASP before 5.1.1, allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors | Aug 19, 2011 | 7.5 | 23 | NO | NO |
CVE-2010-3924HIGH SQL injection vulnerability in Aimluck Aipo before 5.1.0.1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors. | Jan 13, 2011 | 7.5 | 23 | NO | NO |
CVE-2011-1341MEDIUM Cross-site request forgery (CSRF) vulnerability in Aimluck Aipo before 4.0.4.0, and Aipo for ASP before 4.0.4.0, allows remote attackers to hijack the authentication of administrat | Aug 19, 2011 | 6.8 | 21 | NO | NO |
CVE-2007-5154MEDIUM Session fixation vulnerability in Aipo and Aipo ASP 3.0.1.0 and earlier allows remote attackers to hijack web sessions via unspecified vectors. | Oct 1, 2007 | 5.8 | 16 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Aimluck.
Media articles that mention a CVE ID that affects a product developed by Aimluck — matched by CVE ID, not by vendor name.