Instantasp maintains a focused product line centered on ASP-based web applications and community platforms such as Instantasp and InstantForum, with the durable vulnerability signal concentrated on input-handling issues, particularly cross-site scripting in web-page generation contexts. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Instantasp over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-0302MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in InstantASP 4.1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) SessionID parameter to (a) Logon.a | Jan 18, 2007 | 6.8 | 27 | NO | YES |
CVE-2014-9468MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in InstantASP InstantForum.NET 4.1.3, 4.1.2, 4.1.1, 4.0.0, 4.1.0, and 3.4.0 allow remote attackers to inject arbitrary web scrip | Feb 19, 2015 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Instantasp.
Media articles that mention a CVE ID that affects a product developed by Instantasp — matched by CVE ID, not by vendor name.