Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2008-2423
Disclosure Date: May 23, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Interchange before 5.6.0 and before 5.5.2 allows remote attackers to cause a denial of service via crafted HTTP requests. NOTE: this might overlap CVE-2007-2635.
0
Attacker Value
Unknown
CVE-2007-2635
Disclosure Date: May 13, 2007 (last updated October 04, 2023)
Unspecified vulnerability in Interchange before 5.4.2 allows remote attackers to cause an unspecified denial of service (possibly server hang) via crafted HTTP requests.
0
Attacker Value
Unknown
CVE-2005-3072
Disclosure Date: September 27, 2005 (last updated February 22, 2025)
SQL injection vulnerability in pages/forum/submit.html in Interchange 4.9.3 up to 5.2.0 allows remote attackers to execute arbitrary SQL commands via unknown vectors.
0
Attacker Value
Unknown
CVE-2005-3073
Disclosure Date: September 27, 2005 (last updated February 22, 2025)
Unspecified vulnerability in Interchange 5.0.1 allows attackers 4.9.3, 5.0 before 5.0.2, and 5.2, when a catalog has been created using the (1) "mike", (2) "standard", or (3) "foundation" demo, allows attackers to inject Interchange Tag Language (ITL) elements into the forum/submit.html page.
0
Attacker Value
Unknown
CVE-2004-0374
Disclosure Date: May 04, 2004 (last updated February 22, 2025)
Interchange before 5.0.1 allows remote attackers to "expose the content of arbitrary variables" and read or modify sensitive SQL information via an HTTP request ending with the "__SQLUSER__" string.
0