CVE-2003-0560

VP-ASP - SQL Injection via id Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2003-0560. PoCs published by Bosen & TioEuy, TioEuy & AresU.

AI-analyzed exploit summary This Perl script exploits a SQL injection vulnerability in VP-ASP's shopexd.asp script by injecting a malicious SQL query to create a new user with elevated privileges. The exploit uses LWP to send a crafted HTTP request to the target URI.

Description

SQL injection vulnerability in shopexd.asp for VP-ASP allows remote attackers to gain administrator privileges via the id parameter.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Bosen & TioEuy · perlwebappsasp
https://www.exploit-db.com/exploits/22889

This Perl script exploits a SQL injection vulnerability in VP-ASP's shopexd.asp script by injecting a malicious SQL query to create a new user with elevated privileges. The exploit uses LWP to send a crafted HTTP request to the target URI.

Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: VP-ASP (version not specified)
No auth needed
Prerequisites: Target URI with vulnerable shopexd.asp script · Product ID parameter
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by TioEuy & AresU · perlwebappsasp
https://www.exploit-db.com/exploits/22888

This exploit targets a SQL injection vulnerability in VP-ASP Shopping Cart via the shopexd.asp script. It crafts a malicious HTTP GET request to insert arbitrary user credentials into the database.

Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: VP-ASP Shopping Cart
No auth needed
Prerequisites: Network access to the target server · VP-ASP Shopping Cart installed with vulnerable shopexd.asp script
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Exploit, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/8159
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=105733277731084&w=2

Scores

EPSS 0.0317
EPSS Percentile 86.4%

Details

Status published
Products (1)
virtual_programming/vp-asp 5.0
Published Aug 18, 2003
Tracked Since Feb 18, 2026