Vulnerabilities > THE Everything Development Company

DATE CVE VULNERABILITY TITLE RISK
2008-02-12 CVE-2008-0724 Credentials Management vulnerability in the Everything Development Company the Everything Development Engine
The Everything Development Engine in The Everything Development System Pre-1.0 and earlier stores passwords in cleartext in a database, which makes it easier for context-dependent attackers to obtain access to user accounts.
5.0
2008-02-12 CVE-2008-0675 SQL Injection vulnerability in the Everything Development Company the Everything Development Engine
SQL injection vulnerability in cms/index.pl in The Everything Development Engine in The Everything Development System Pre-1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the node_id parameter.
7.5