interact records
6 published records for vendor interact.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
30Monitor | CVE-2006-1643No exploit | SQL injection vulnerability in login.php in Interact 2.1.1 allows remote attackers to execute arbitrary SQL commands via the user_name paraminteract · interact | High7.5 | — | 1.2% | Apr 6, 2006 |
28Monitor | CVE-2008-2220Proof of concept | Multiple PHP remote file inclusion vulnerabilities in Interact Learning Community Environment Interact 2.4.1, when register_globals is enablinteract · interact · CWE-94 | Medium6.8 | — | 1.8% | May 14, 2008 |
20Monitor | CVE-2006-1644No exploit | login.php in Interact 2.1.1 generates different responses depending on whether or not a username is valid, which allows remote attackers to interact · interact | Medium5.0 | — | 1.4% | Apr 6, 2006 |
18Monitor | CVE-2007-3328No exploit | Multiple cross-site scripting (XSS) vulnerabilities in Interact 2.4 beta 1 allow remote attackers to inject arbitrary web script or HTML viainteract · interact | Medium4.3 | — | 2.3% | Jun 21, 2007 |
17Monitor | CVE-2007-4177No exploit | Multiple cross-site scripting (XSS) vulnerabilities in Interact before 2.4 allow remote attackers to inject arbitrary web script or HTML viainteract · interact | Medium4.3 | — | 1.2% | Aug 7, 2007 |
10Monitor | CVE-2006-1642No exploit | Cross-site scripting (XSS) vulnerability in Interact 2.1.1 allows remote attackers to inject arbitrary web script or HTML via (1) the searchinteract · interact | Low2.6 | — | 1.2% | Apr 6, 2006 |
- CVE-2006-164330Monitor
SQL injection vulnerability in login.php in Interact 2.1.1 allows remote attackers to execute arbitrary SQL commands via the user_name param
HighCVSS 7.5No exploitEPSS 1%interact · interactApr 6, 2006
- CVE-2008-222028Monitor
Multiple PHP remote file inclusion vulnerabilities in Interact Learning Community Environment Interact 2.4.1, when register_globals is enabl
MediumCVSS 6.8Proof of conceptEPSS 2%interact · interactMay 14, 2008
- CVE-2006-164420Monitor
login.php in Interact 2.1.1 generates different responses depending on whether or not a username is valid, which allows remote attackers to
MediumCVSS 5.0No exploitEPSS 1%interact · interactApr 6, 2006
- CVE-2007-332818Monitor
Multiple cross-site scripting (XSS) vulnerabilities in Interact 2.4 beta 1 allow remote attackers to inject arbitrary web script or HTML via
MediumCVSS 4.3No exploitEPSS 2%interact · interactJun 21, 2007
- CVE-2007-417717Monitor
Multiple cross-site scripting (XSS) vulnerabilities in Interact before 2.4 allow remote attackers to inject arbitrary web script or HTML via
MediumCVSS 4.3No exploitEPSS 1%interact · interactAug 7, 2007
- CVE-2006-164210Monitor
Cross-site scripting (XSS) vulnerability in Interact 2.1.1 allows remote attackers to inject arbitrary web script or HTML via (1) the search
LowCVSS 2.6No exploitEPSS 1%interact · interactApr 6, 2006