Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
kayako vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-3700
Multiple cross-site scripting (XSS) vulnerabilities in Kayako SupportSuite 3.20.02 and previous versions allow remote malicious users to inject arbitrary web script or HTML via (1) the sessionid parameter in a livesupport startclientchat action to visitor/index.php; (2) the filte...
Kayako Supportsuite 3.10.02
Kayako Supportsuite 3.11.00
Kayako Supportsuite 3.10.00
Kayako Supportsuite 3.11.01
Kayako Supportsuite
2 EDB exploits
NA
CVE-2008-3701
SQL injection vulnerability in staff/index.php in Kayako SupportSuite 3.20.02 and previous versions allows remote authenticated users to execute arbitrary SQL commands via the customfieldlinkid parameter in a delcflink action.
Kayako Supportsuite 3.10.00
Kayako Supportsuite 3.11.01
Kayako Supportsuite
Kayako Supportsuite 3.10.02
Kayako Supportsuite 3.11.00
1 EDB exploit
NA
CVE-2008-0395
Kayako SupportSuite 3.11.01 allows remote malicious users to obtain server configuration information via a direct request to syncml/index.php, which prints the contents of the $_SERVER superglobal.
Kayako Supportsuite 3.11.01
NA
CVE-2007-2562
Cross-site scripting (XSS) vulnerability in index.php in Kayako eSupport 3.00.90 allows remote malicious users to inject arbitrary web script or HTML via the _m parameter.
Kayako Esupport 3.00.90
NA
CVE-2007-1145
Multiple cross-site scripting (XSS) vulnerabilities in Kayako SupportSuite - ESupport 3.00.13 and 3.04.10 allow remote malicious users to inject arbitrary web script or HTML via unspecified vectors related to a (1) lostpassword or (2) register action in index.php, (3) unspecified...
Kayako Esupport 3.00.13
Kayako Esupport 3.04.10
NA
CVE-2006-5825
Cross-site scripting (XSS) vulnerability in index.php in Kayako SupportSuite 3.00.32 allows remote malicious users to inject arbitrary web script or HTML via the query string.
Kayako Supportsuite 3.00.32
1 EDB exploit
NA
CVE-2006-4011
PHP remote file inclusion vulnerability in esupport/admin/autoclose.php in Kayako eSupport 2.3.1 and previous versions, when register_globals is enabled, allows remote malicious users to execute arbitrary PHP code via a URL in the subd parameter.
Kayako Esupport 2.3
Kayako Esupport 2.3.1
1 EDB exploit
NA
CVE-2005-2460
Multiple cross-site scripting (XSS) vulnerabilities in Kayako liveResponse 2.x allow remote malicious users to inject arbitrary web script or HTML via the (1) username parameter or (2) name field when entering a session or sending a message.
Kayako Liveresponse 2.0
1 EDB exploit
NA
CVE-2005-2463
Kayako liveResponse 2.x allows remote malicious users to obtain sensitive information via a direct request to addressbook.php and other include scripts, which reveals the path in an error message.
Kayako Liveresponse 2.0
NA
CVE-2005-4637
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Kayako SupportSuite 3.00.26 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) nav parameter in the downloads module, (2) Full Name and (3) Email fields in the c...
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-52710
arbitrary
CVE-2024-5272
CVE-2024-2961
brute force
remote
CVE-2024-32944
CVE-2024-36241
CVE-2024-5274
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »