20030704 VPASP SQL Injection Vulnerability & Exploit CODEmailing list
http://marc.info/?l=bugtraq&m=105733277731084&w=2 CVE-2003-0560
Virtual Programming VP-ASP 5.00 - 'shopexd.asp' SQL Injection (1)
Record summary
CVE-2003-0560 has a selected CVSS score of 10.0; EIP currently links 2 catalogued exploits.
Description
SQL injection vulnerability in shopexd.asp for VP-ASP allows remote attackers to gain administrator privileges via the id parameter.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBVirtual Programming VP-ASP 5.00 - 'shopexd.asp' SQL Injection (1)ExploitDB exploitby TioEuy & AresUNot analyzed1 file
ExploitDBVirtual Programming VP-ASP 5.00 - 'shopexd.asp' SQL Injection (2)ExploitDB exploitby Bosen & TioEuyNot analyzed1 file
References
38159vdb entry
http://www.securityfocus.com/bid/8159 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2003-0560