sub

2 exploits Active since Feb 2008
CVE-2008-0675 EXPLOITDB text WORKING POC
The Everything Development Engine < pre-1.0 - SQL Injection via node_id Parameter
SQL injection vulnerability in cms/index.pl in The Everything Development Engine in The Everything Development System Pre-1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the node_id parameter.
CVE-2008-0724 EXPLOITDB text WORKING POC
The Everything Development Engine < pre-1.0 - Cleartext Password Storage
The Everything Development Engine in The Everything Development System Pre-1.0 and earlier stores passwords in cleartext in a database, which makes it easier for context-dependent attackers to obtain access to user accounts.