Site2nite develops a modestly represented line of web-based business applications spanning classifieds, real estate, and automotive management platforms, with a durable vulnerability signal concentrated in SQL-injection weaknesses across its product portfolio. The recurring injection flaws reflect common input-handling gaps in application-tier code and represent a structural class that defenders can address through parameterized queries and input validation discipline. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Site2nite over time
Signals from CVEs in this vendor scope (8 CVEs).
8 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-4793HIGH SQL injection vulnerability in detail.asp in Site2Nite Auto e-Manager allows remote attackers to execute arbitrary SQL commands via the ID parameter. | Apr 27, 2011 | 7.5 | 31 | NO | YES |
CVE-2010-4636HIGH SQL injection vulnerability in detail.asp in Site2Nite Business e-Listings allows remote attackers to execute arbitrary SQL commands via the ID parameter. | Dec 30, 2010 | 7.5 | 31 | NO | YES |
CVE-2010-4635HIGH SQL injection vulnerability in detail.asp in Site2Nite Vacation Rental (VRBO) Listings allows remote attackers to execute arbitrary SQL commands via the ID parameter. | Dec 30, 2010 | 7.5 | 31 | NO | YES |
CVE-2010-4356HIGH SQL injection vulnerability in news_default.asp in Site2Nite Big Truck Broker allows remote attackers to execute arbitrary SQL commands via the txtSiteId parameter. | Dec 1, 2010 | 7.5 | 31 | NO | YES |
CVE-2010-2688HIGH SQL injection vulnerability in detail.asp in Site2Nite Boat Classifieds allows remote attackers to execute arbitrary SQL commands via the ID parameter. | Jul 12, 2010 | 7.5 | 31 | NO | YES |
CVE-2010-2687HIGH SQL injection vulnerability in printdetail.asp in Site2Nite Boat Classifieds allows remote attackers to execute arbitrary SQL commands via the Id parameter. | Jul 12, 2010 | 7.5 | 31 | NO | YES |
CVE-2008-7030HIGH Multiple SQL injection vulnerabilities in Site2Nite Real Estate Web allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password field to an unspec | Aug 24, 2009 | 7.5 | 28 | NO | YES |
CVE-2008-0771HIGH Multiple SQL injection vulnerabilities in default.asp in Site2Nite allow remote attackers to execute arbitrary SQL commands via the (1) txtUserName and (2) txtPassword parameters. | Feb 14, 2008 | 7.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (8 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Site2nite.
Media articles that mention a CVE ID that affects a product developed by Site2nite — matched by CVE ID, not by vendor name.