VYPR

Real Estate Web

by Site2nite

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2008-70300.030.00Aug 24, 2009Multiple SQL injection vulnerabilities in Site2Nite Real Estate Web allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password field to an unspecified component, possibly agentlist.asp. NOTE: this issue was disclosed by an unreliable researcher, so it might be incorrect.
CVE-2008-07710.000.00Feb 14, 2008Multiple SQL injection vulnerabilities in default.asp in Site2Nite allow remote attackers to execute arbitrary SQL commands via the (1) txtUserName and (2) txtPassword parameters. NOTE: some of these details are obtained from third party information.