CVE-2008-1430

Iatek ASPapp - SQL Injection

Title source: llm
STIX 2.1

Description

SQL injection vulnerability in links.asp in ASPapp allows remote attackers to execute arbitrary SQL commands via the CatId parameter.

Exploits (2)

exploitdb WORKING POC VERIFIED
by xcorpitx · textwebappsasp
https://www.exploit-db.com/exploits/5286
exploitdb WORKING POC VERIFIED
by xcorpitx · textwebappsasp
https://www.exploit-db.com/exploits/5276

References (1)

Core 1
Core References
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/5276

Scores

EPSS 0.0047
EPSS Percentile 64.8%

Details

CWE
CWE-89
Status published
Products (1)
iatek/aspapp
Published Mar 20, 2008
Tracked Since Feb 18, 2026