Vulnerabilities (CVE)

Filtered by vendor Socialgroupie Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-6358 1 Socialgroupie 1 Social Groupie 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in group_index.php in Social Groupie allows remote attackers to execute arbitrary SQL commands via the id parameter.
CVE-2008-6367 1 Socialgroupie 1 Social Groupie 2024-02-04 8.5 HIGH N/A
Unrestricted file upload vulnerability in Photos/create_album.php in Social Groupie allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in Member_images/.