← Back

Interchange Development Group

interchange_development_group

5 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Interchange
interchange

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Interchange Development Group
1Interchange
Apr 23, 2026
May 23, 2008
N/A· v4
N/A· v3
10.0 HIGH· v2
Unspecified vulnerability in Interchange before 5.6.0 and before 5.5.2 allows remote attackers to cause a denial of service via crafted HTTP requests. NOTE: this might overlap CVE-2007-2635.
1Interchange Development Group
1Interchange
Apr 23, 2026
May 13, 2007
N/A· v4
N/A· v3
7.8 HIGH· v2
Unspecified vulnerability in Interchange before 5.4.2 allows remote attackers to cause an unspecified denial of service (possibly server hang) via crafted HTTP requests.
1Interchange Development Group
1Interchange
Apr 16, 2026
Sep 27, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unspecified vulnerability in Interchange 5.0.1 allows attackers 4.9.3, 5.0 before 5.0.2, and 5.2, when a catalog has been created using the (1) "mike", (2) "standard", or (3) "foundation" demo, allows attackers to inject...Show more
Unspecified vulnerability in Interchange 5.0.1 allows attackers 4.9.3, 5.0 before 5.0.2, and 5.2, when a catalog has been created using the (1) "mike", (2) "standard", or (3) "foundation" demo, allows attackers to inject Interchange Tag Language (ITL) elements into the forum/submit.html page.Show less
1Interchange Development Group
1Interchange
Apr 16, 2026
Sep 27, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in pages/forum/submit.html in Interchange 4.9.3 up to 5.2.0 allows remote attackers to execute arbitrary SQL commands via unknown vectors.
1Interchange Development Group
1Interchange
Apr 16, 2026
May 4, 2004
N/A· v4
N/A· v3
6.4 MEDIUM· v2
Interchange before 5.0.1 allows remote attackers to "expose the content of arbitrary variables" and read or modify sensitive SQL information via an HTTP request ending with the "__SQLUSER__" string.