Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
deskpro deskpro 2.0.1 vulnerabilities and exploits
(subscribe to this query)
605
VMScore
CVE-2006-6159
Multiple cross-site scripting (XSS) vulnerabilities in newticket.php in DeskPRO 2.0.0 and 2.0.1 allow remote malicious users to inject arbitrary web script or HTML via the (1) message or (2) subject parameter.
Deskpro Deskpro 2.0.0
Deskpro Deskpro 2.0.1
435
VMScore
CVE-2007-2011
Cross-site scripting (XSS) vulnerability in login.php in DeskPro 2.0.1 allows remote malicious users to inject arbitrary web script or HTML via the username parameter.
Deskpro Deskpro 2.0.1
1 EDB exploit
445
VMScore
CVE-2006-7000
Headstart Solutions DeskPRO allows remote malicious users to obtain the full path via direct requests to (1) email/mail.php, (2) includes/init.php, (3) certain files in includes/cron/, and (4) jpgraph.php, (5) jpgraph_bar.php, (6) jpgraph_pie.php, and (7) jpgraph_pie3d.php in inc...
Headstart Solutions Deskpro 2.0.0
Headstart Solutions Deskpro 2.0.1
445
VMScore
CVE-2006-6998
install/loader_help.php in Headstart Solutions DeskPRO allows remote malicious users to obtain configuration information via a q=phpinfo QUERY_STRING, which calls the phpinfo function.
Headstart Solutions Deskpro 2.0.0
Headstart Solutions Deskpro 2.0.1
383
VMScore
CVE-2006-6999
attachment.php in Headstart Solutions DeskPRO allows remote malicious users to read all uploaded files by providing the file number in a modified id parameter.
Headstart Solutions Deskpro 2.0.0
Headstart Solutions Deskpro 2.0.1
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27322
administrator privileges
CVE-2024-1579
hardcoded
CVE-2023-20198
CVE-2024-33587
CVE-2024-33449
CVE-2024-4308
HTML injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started