Vulnerability index

Browse CVEs

11 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Support Incident Tracker MEDIUM 6.1
CVE-2019-20220

In Support Incident Tracker (SiT!) 3.67, the search_id parameter in the search_incidents_advanced.php page is affected by XSS.

No fix yet
Fix from $1,600 2020-01-02
Support Incident Tracker MEDIUM 6.1
CVE-2019-20221

In Support Incident Tracker (SiT!) 3.67, Load Plugins input in the config.php page is affected by XSS. The XSS payload is, for example, executed on t…

No fix yet
Fix from $1,600 2020-01-02
Support Incident Tracker MEDIUM 6.1
CVE-2019-20222

In Support Incident Tracker (SiT!) 3.67, the Short Application Name and Application Name inputs in the config.php page are affected by XSS.

No fix yet
Fix from $1,600 2020-01-02
Support Incident Tracker MEDIUM 6.1
CVE-2019-20223

In Support Incident Tracker (SiT!) 3.67, the id parameter is affected by XSS on all endpoints that use this parameter, a related issue to CVE-2012-22…

No fix yet
Fix from $1,600 2020-01-02
Support Incident Tracker MEDIUM 5.0
CVE-2011-5075

translate.php in Support Incident Tracker (aka SiT!) 3.45 through 3.65 allows remote attackers to obtain sensitive information via a direct request u…

No fix yet
Fix from $1,600 2012-01-29
Support Incident Tracker HIGH 7.5
CVE-2011-4337

Static code injection vulnerability in translate.php in Support Incident Tracker (aka SiT!) 3.45 through 3.65 allows remote attackers to inject arbit…

No fix yet
Fix from $1,950 2012-01-29
Support Incident Tracker HIGH 7.5
CVE-2011-3831

SQL injection vulnerability in incident_attachments.php in Support Incident Tracker (aka SiT!) 3.65 allows remote attackers to execute arbitrary SQL …

No fix yet
Fix from $1,950 2012-01-29
Support Incident Tracker MEDIUM 6.8
CVE-2011-5068

Multiple cross-site request forgery (CSRF) vulnerabilities in Support Incident Tracker (aka SiT!) 3.65 allow remote attackers to hijack the authentic…

Mitigation only
Fix from $1,600 2012-01-29
Support Incident Tracker MEDIUM 6.5
CVE-2011-3832

Eval injection vulnerability in config.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated administrators to execute arbitrar…

No fix yet
Fix from $1,600 2012-01-29
Support Incident Tracker MEDIUM 6.0
CVE-2011-3833EPSS 20%

Unrestricted file upload vulnerability in ftp_upload_file.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to execut…

No fix yet
Fix from $1,600 2012-01-29
Support Incident Tracker MEDIUM 6.0
CVE-2011-5069

Unrestricted file upload vulnerability in incident_attachments.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to e…

Mitigation only
Fix from $1,600 2012-01-29