Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Esupport HIGH 7.5
CVE-2010-2911

SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote attackers to execute arbitrary SQL commands via the newsid paramete…

No fix yet
Fix from $1,950 2010-07-28
Esupport HIGH 7.5
CVE-2010-2912

SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote attackers to execute arbitrary SQL commands via the _a parameter in…

No fix yet
Fix from $1,950 2010-07-28
Supportsuite MEDIUM 6.5
CVE-2008-3701

SQL injection vulnerability in staff/index.php in Kayako SupportSuite 3.20.02 and earlier allows remote authenticated users to execute arbitrary SQL …

Fix: after 3.20.02
Fix from $1,600 2008-08-15
Supportsuite MEDIUM 5.0
CVE-2008-0395

Kayako SupportSuite 3.11.01 allows remote attackers to obtain server configuration information via a direct request to syncml/index.php, which prints…

Mitigation only
Fix from $1,600 2008-01-23
Liveresponse MEDIUM 6.4
CVE-2005-2461

Multiple SQL injection vulnerabilities in the calendar feature in Kayako liveResponse 2.x allow remote attackers to execute arbitrary SQL commands vi…

Mitigation only
Fix from $1,600 2005-12-31
Liveresponse MEDIUM 6.4
CVE-2005-2463

Kayako liveResponse 2.x allows remote attackers to obtain sensitive information via a direct request to addressbook.php and other include scripts, wh…

No fix yet
Fix from $1,600 2005-12-31
Liveresponse MEDIUM 5.8
CVE-2005-2460

Multiple cross-site scripting (XSS) vulnerabilities in Kayako liveResponse 2.x allow remote attackers to inject arbitrary web script or HTML via the …

No fix yet
Fix from $1,600 2005-12-31
Supportsuite MEDIUM 5.0
CVE-2005-4638

index.php in Kayako SupportSuite 3.00.26 and earlier allow remote attackers to obtain the full path via (1) _a and (2) newsid parameters in the news …

Fix: after 3.00.26
Fix from $1,600 2005-12-31
Esupport MEDIUM 6.8
CVE-2005-0487

Cross-site scripting (XSS) vulnerability in index.php for Kayako ESupport 2.3.1, and possibly other versions, allows remote attackers to inject arbit…

Mitigation only
Fix from $1,600 2005-03-30
Esupport MEDIUM 5.0
CVE-2004-1413

Multiple SQL injection vulnerabilities in Kayako eSupport 2.x allow remote attackers to execute arbitrary SQL commands via the (1) subcat, (2) rate, …

No fix yet
Fix from $1,600 2004-12-31