Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Rich White Subscribe
Filtered by product School Data Nav
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-2641 1 Rich White 1 School Data Nav 2017-09-18 6.8 MEDIUM N/A
PHP remote file inclusion vulnerability in app_and_readme/navigator/index.php in School Data Navigator allows remote attackers to execute arbitrary PHP code via a URL in the page parameter. NOTE: this can also be leveraged to include and execute arbitrary local files via .. (dot dot) sequences.