Show filters
601 Total Results
Displaying 521-530 of 601
Sort by:
Attacker Value
Unknown
CVE-2009-4433
Disclosure Date: December 28, 2009 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in IDevSpot iSupport 1.8 and earlier allow remote attackers to inject arbitrary web script or HTML via the (a) 5 or (b) 9 field in a post action to ticket_function.php, reachable through ticket_submit.php and index.php; (c) the which parameter to function.php, or (d) the which parameter to index.php, related to knowledgebase_list.php. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2009-3567
Disclosure Date: October 06, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in modules/tickets/functions_ticketsui.php in Kayako SupportSuite and eSupport 3.60.04 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in the staff control panel, a different vector than CVE-2007-1145.
0
Attacker Value
Unknown
CVE-2009-3427
Disclosure Date: September 25, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Kayako SupportSuite 3.50.06 allows remote attackers to inject arbitrary web script or HTML via the subject field in a ticket.
0
Attacker Value
Unknown
CVE-2009-2603
Disclosure Date: July 27, 2009 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in index.php in Escon SupportPortal Pro 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) cat and (2) tid parameters.
0
Attacker Value
Unknown
CVE-2008-6864
Disclosure Date: July 14, 2009 (last updated October 04, 2023)
Xigla Software Absolute Live Support .NET 5.1 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.
0
Attacker Value
Unknown
CVE-2009-0215
Disclosure Date: March 25, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in the GetXMLValue method in the IBM Access Support ActiveX control in IbmEgath.dll, as distributed on IBM and Lenovo computers, allows remote attackers to execute arbitrary code via unspecified vectors.
0
Attacker Value
Unknown
CVE-2009-0867
Disclosure Date: March 10, 2009 (last updated October 04, 2023)
The HRM-S service in Fujitsu Enhanced Support Facility 3.0 and 3.0.1 allows remote attackers to obtain (1) hardware and (2) software information via unspecified requests in a client connection.
0
Attacker Value
Unknown
CVE-2008-6222
Disclosure Date: February 20, 2009 (last updated October 04, 2023)
Directory traversal vulnerability in the Pro Desk Support Center (com_pro_desk) component 1.0 and 1.2 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the include_file parameter to index.php.
0
Attacker Value
Unknown
CVE-2009-0458
Disclosure Date: February 10, 2009 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in admin/login_submit.php in Whole Hog Ware Support 1.x allow remote attackers to execute arbitrary SQL commands via (1) the uid parameter (aka Username field) or (2) the pwd parameter (aka Password field). NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2009-0460
Disclosure Date: February 10, 2009 (last updated October 04, 2023)
Whole Hog Ware Support 1.x allows remote attackers to bypass authentication and obtain administrative access via an integer value in the adminid cookie.
0