The Net Guys maintains a small portfolio of web-based applications including blog, polling, protection, and quoting tools, with the durable signal centered on input-handling vulnerabilities, particularly SQL injection in database-driven features. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by The Net Guys over time
Signals from CVEs in this vendor scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-5930HIGH SQL injection vulnerability in admin/blog_comments.asp in The Net Guys ASPired2Blog allows remote attackers to execute arbitrary SQL commands via the BlogID parameter. | Jan 21, 2009 | 7.5 | 28 | NO | YES |
CVE-2008-0487HIGH Multiple SQL injection vulnerabilities in login.asp in ASPired2Protect allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters. N | Jan 30, 2008 | 7.5 | 28 | NO | YES |
CVE-2006-5892HIGH SQL injection vulnerability in MoreInfo.asp in The Net Guys ASPired2Poll 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. | Nov 14, 2006 | 7.5 | 28 | NO | YES |
CVE-2008-6355MEDIUM The Net Guys ASPired2Protect stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing the u | Mar 2, 2009 | 5.0 | 24 | NO | YES |
CVE-2008-5885MEDIUM The Net Guys ASPired2Quote stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing | Jan 12, 2009 | 5.0 | 24 | NO | YES |
CVE-2008-6354MEDIUM The Net Guys ASPired2poll stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing the user | Mar 2, 2009 | 5.0 | 23 | NO | YES |
CVE-2008-5931MEDIUM The Net Guys ASPired2Blog stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing u | Jan 21, 2009 | 5.0 | 23 | NO | YES |
Signals from CVEs in this vendor scope (7 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by The Net Guys.
Media articles that mention a CVE ID that affects a product developed by The Net Guys — matched by CVE ID, not by vendor name.