From the webpage screenshot, the key information about the vulnerability can be summarized as follows: Vulnerability Name: NetRisk <= 2.0 (XSS/SQL Injection) Remote Vulnerabilities Disclosure Date: 2008-11-05 Discoverer: StAkeR aka athos Risk Level: High CVE ID: CVE-2008-4887 CWE ID: CWE-89 CVSS Base Score: 7.5/10 - Attack Complexity: Low - Confidentiality Impact: Partial - Integrity Impact: Partial - Availability Impact: Partial CVSS Impact Score: 6.4/10 CVSS Exploitability Score: 10/10 - Authentication Required: No required Vulnerability Description: - This vulnerability exists in NetRisk version 2.0, allowing attackers to perform remote attacks via XSS and SQL injection. - Cross-Site Scripting (XSS): - Example: - Remote SQL Injection: - Example: - Or: - Remote Blind SQL Injection: - Example: Reference Links: - SecurityFocus:  - Milw0rm:  The above information is derived from analyzing the content of the webpage screenshot and helps in understanding and assessing the security vulnerabilities present in NetRisk 2.0.