Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
kayako vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2010-2912
SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote malicious users to execute arbitrary SQL commands via the _a parameter in a downloads action.
Kayako Esupport 3.70.02
2 EDB exploits
NA
CVE-2008-4761
Cross-site scripting (XSS) vulnerability in includes/htmlArea/plugins/HtmlTidy/html-tidy-logic.php in Kayako eSupport 3.20.2 allows remote malicious users to inject arbitrary web script or HTML via the jsMakeSrc parameter. NOTE: the provenance of this information is unknown; the ...
Kayako Esupport 3.20.2
1 EDB exploit
NA
CVE-2005-0487
Cross-site scripting (XSS) vulnerability in index.php for Kayako ESupport 2.3.1, and possibly other versions, allows remote malicious users to inject arbitrary HTML and web script via the nav parameter.
Kayako Esupport 2.3.1
NA
CVE-2005-0842
Cross-site scripting (XSS) vulnerability in index.php in Kayako eSupport 2.3 allows remote malicious users to inject arbitrary web script or HTML via the (1) _i or (2) _c parameter.
Kayako Esupport 2.3
1 EDB exploit
NA
CVE-2009-3427
Cross-site scripting (XSS) vulnerability in Kayako SupportSuite 3.50.06 allows remote malicious users to inject arbitrary web script or HTML via the subject field in a ticket.
Kayako Supportsuite 3.50.06
NA
CVE-2005-4637
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Kayako SupportSuite 3.00.26 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) nav parameter in the downloads module, (2) Full Name and (3) Email fields in the c...
1 EDB exploit
6.5
CVSSv3
CVE-2020-2500
This improper access control vulnerability in Helpdesk allows malicious users to get control of QNAP Kayako service. Attackers can access the sensitive data on QNAP Kayako server with API keys. We have replaced the API key to mitigate the vulnerability, and already fixed the issu...
Qnap Helpdesk
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7028
memory leak
log injection
CVE-2024-3400
CVE-2022-48695
CVE-2022-48675
CVE-2024-34487
CVE-2024-33792
spoof
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3