Skip to main content

Vendor/product archive

kayako / supportsuite CVEs

Beta · best-effort

9 CVEs tagged to kayako / supportsuite0 Critical, 0 High, 8 Medium, 1 Low, 0 Unrated.

CVE-2010-0460

Published Jan 28, 2010

Multiple cross-site scripting (XSS) vulnerabilities in staff/index.php in Kayako SupportSuite 3.60.04 and earlier allow remote authenticated users to inject arbitrary web script o…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2009-3567

Published Oct 6, 2009

Cross-site scripting (XSS) vulnerability in modules/tickets/functions_ticketsui.php in Kayako SupportSuite and eSupport 3.60.04 and earlier allows remote attackers to inject arbit…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-3427

Published Sep 25, 2009

Cross-site scripting (XSS) vulnerability in Kayako SupportSuite 3.50.06 allows remote attackers to inject arbitrary web script or HTML via the subject field in a ticket.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3700

Published Aug 15, 2008

Multiple cross-site scripting (XSS) vulnerabilities in Kayako SupportSuite 3.20.02 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the sessionid…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3701

Published Aug 15, 2008

SQL injection vulnerability in staff/index.php in Kayako SupportSuite 3.20.02 and earlier allows remote authenticated users to execute arbitrary SQL commands via the customfieldli…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0395

Published Jan 23, 2008

Kayako SupportSuite 3.11.01 allows remote attackers to obtain server configuration information via a direct request to syncml/index.php, which prints the contents of the $_SERVER…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-5825

Published Nov 10, 2006

Cross-site scripting (XSS) vulnerability in index.php in Kayako SupportSuite 3.00.32 allows remote attackers to inject arbitrary web script or HTML via the query string.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-4637

Published Dec 31, 2005

Multiple cross-site scripting (XSS) vulnerabilities in index.php in Kayako SupportSuite 3.00.26 and earlier allow remote attackers to inject arbitrary web script or HTML via the (…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-4638

Published Dec 31, 2005

index.php in Kayako SupportSuite 3.00.26 and earlier allow remote attackers to obtain the full path via (1) _a and (2) newsid parameters in the news module, (3) downloaditemid par…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1