Aspjar maintains a narrowly scoped product portfolio centered on its guestbook application, a legacy web component. The observed vulnerability signal, while limited in specificity, underscores the importance of reviewing this vendor's advisories in the context of older web applications still in service; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Aspjar over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2002-1729MEDIUM Cross-site scripting vulnerability (XSS) in ASPjar Guestbook 1.00 allows remote attackers to execute arbitrary script as other users via the "web site" parameter in a guestbook mes | Dec 31, 2002 | 6.8 | 23 | NO | NO |
CVE-2005-0423MEDIUM SQL injection vulnerability in login.asp in ASPjar Guestbook allows remote attackers to execute arbitrary SQL commands via the password field. | Apr 27, 2005 | 5.0 | 15 | NO | NO |
CVE-2005-0424MEDIUM Unknown vulnerability in the delete.asp program in certain versions of ASPjar Guestbook allows remote attackers to delete messages. NOTE: there is insufficient information to know | Apr 27, 2005 | 5.0 | 15 | NO | NO |
CVE-2002-1730MEDIUM ASPjar Guestbook 1.00 allows remote attackers to delete arbitrary messages accessing the delete.asp administrative script with certain cookie values set to "true". | Dec 31, 2002 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Aspjar.
Media articles that mention a CVE ID that affects a product developed by Aspjar — matched by CVE ID, not by vendor name.