David Degner has a focused vulnerability footprint centered on PHP College Exchange, a web-based educational platform, with the durable signal concentrated on application-layer input-handling weaknesses including code injection, cross-site scripting, and SQL injection. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by David Degner over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-2096HIGH SQL injection vulnerability in house/listing_view.php in phpCollegeExchange 0.1.5c allows remote attackers to execute arbitrary SQL commands via the itemnr parameter. | Jun 17, 2009 | 7.5 | 28 | NO | YES |
CVE-2009-2218MEDIUM Multiple PHP remote file inclusion vulnerabilities in phpCollegeExchange 0.1.5c, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in | Jun 25, 2009 | 6.8 | 26 | NO | YES |
CVE-2009-2219MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in phpCollegeExchange 0.1.5c allow remote attackers to inject arbitrary web script or HTML via the (1) _SESSION[handle] paramete | Jun 25, 2009 | 4.3 | 22 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by David Degner.
Media articles that mention a CVE ID that affects a product developed by David Degner — matched by CVE ID, not by vendor name.