VP-ASP suffers from cross site scripting and remote SQL injection vulnerabilities.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/85504/vpasp-sqlxss.txt
Source: https://packetstormsecurity.com/files/85504/VP-ASP-SQL-Injection-Cross-Site-Scripting.html