Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Helpbox HIGH 7.5
CVE-2012-4971

Multiple SQL injection vulnerabilities in Layton Helpbox 4.4.0 allow remote attackers to execute arbitrary SQL commands via the (1) reqclass paramete…

No fix yet
Fix from $1,950 2012-12-12
Helpbox MEDIUM 5.0
CVE-2012-4976

selectawasset.asp in Layton Helpbox 4.4.0 allows remote attackers to discover ODBC database credentials via an element=sys_asset_id request, which is…

Mitigation only
Fix from $1,600 2012-12-12
Helpbox MEDIUM 5.0
CVE-2012-4977

Layton Helpbox 4.4.0 allows remote attackers to discover cleartext credentials for the login page by sniffing the network.

Mitigation only
Fix from $1,600 2012-12-12
Helpbox MEDIUM 6.5
CVE-2007-5401

Unrestricted file upload vulnerability in uploadrequest.asp in Layton HelpBox 3.7.1 allows remote authenticated users to upload and execute arbitrary…

Mitigation only
Fix from $1,600 2008-01-09
Helpbox MEDIUM 6.5
CVE-2007-5402

Multiple SQL injection vulnerabilities in Layton HelpBox 3.7.1 allow (1) remote attackers to execute arbitrary SQL commands via the sys_request_id pa…

Mitigation only
Fix from $1,600 2008-01-09
Helpbox MEDIUM 5.0
CVE-2007-5404

Layton HelpBox 3.7.1 generates different responses depending on whether or not a username is valid in a failed login attempt, which allows remote att…

Mitigation only
Fix from $1,600 2008-01-09
Helpbox HIGH 7.5
CVE-2004-2551

Multiple SQL injection vulnerabilities in Layton HelpBox 3.0.1 allow remote attackers to execute arbitrary SQL commands via (1) the sys_comment_id pa…

Patch available
Fix from $1,950 2004-12-31