socialsitegenerator records
3 published records for vendor socialsitegenerator.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2008-6421Proof of concept | PHP remote file inclusion vulnerability in social_game_play.php in Social Site Generator (SSG) 2.0 allows remote attackers to execute arbitrsocialsitegenerator · social site generator · CWE-94 | High7.5 | — | 2.9% | Mar 6, 2009 |
30Monitor | CVE-2008-6419Proof of concept | Multiple SQL injection vulnerabilities in Social Site Generator (SSG) 2.0 allow remote attackers to execute arbitrary SQL commands via the (socialsitegenerator · social site generator · CWE-89 | High7.5 | — | 1.2% | Mar 6, 2009 |
21Monitor | CVE-2008-6420Proof of concept | Social Site Generator (SSG) 2.0 allows remote attackers to read arbitrary files via the file parameter to (1) filedload.php, (2) webadmin/dosocialsitegenerator · social site generator · CWE-200 | Medium5.0 | — | 3.6% | Mar 6, 2009 |
- CVE-2008-642131Monitor
PHP remote file inclusion vulnerability in social_game_play.php in Social Site Generator (SSG) 2.0 allows remote attackers to execute arbitr
HighCVSS 7.5Proof of conceptEPSS 3%socialsitegenerator · social site generatorMar 6, 2009
- CVE-2008-641930Monitor
Multiple SQL injection vulnerabilities in Social Site Generator (SSG) 2.0 allow remote attackers to execute arbitrary SQL commands via the (
HighCVSS 7.5Proof of conceptEPSS 1%socialsitegenerator · social site generatorMar 6, 2009
- CVE-2008-642021Monitor
Social Site Generator (SSG) 2.0 allows remote attackers to read arbitrary files via the file parameter to (1) filedload.php, (2) webadmin/do
MediumCVSS 5.0Proof of conceptEPSS 4%socialsitegenerator · social site generatorMar 6, 2009