Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
gregor mynarsky vulnerabilities and exploits
(subscribe to this query)
5.3
CVSSv3
CVE-2015-4071
The Helpdesk Pro Plugin prior to 1.4.0 for Joomla! allows remote malicious users to read the support tickets of arbitrary users via obtaining the target ticketId, and navigating to http://{target}/component/helpdeskpro/?view=ticket&id={ticketId}.
Helpdesk Pro Project Helpdesk Pro
1 EDB exploit
5.4
CVSSv3
CVE-2015-4072
Multiple cross-site scripting (XSS) vulnerabilities in the Helpdesk Pro plugin prior to 1.4.0 for Joomla! allow remote malicious users to inject arbitrary web script or HTML via vectors related to name and message.
Helpdesk Pro Project Helpdesk Pro
1 EDB exploit
9.8
CVSSv3
CVE-2015-4073
Multiple SQL injection vulnerabilities in the Helpdesk Pro plugin prior to 1.4.0 for Joomla! allow remote malicious users to execute arbitrary SQL commands via the (1) ticket_code or (2) email parameter or (3) remote authenticated users to execute arbitrary SQL commands via the f...
Helpdesk Pro Project Helpdesk Pro
1 EDB exploit
7.5
CVSSv3
CVE-2015-4074
Directory traversal vulnerability in the Helpdesk Pro plugin prior to 1.4.0 for Joomla! allows remote malicious users to read arbitrary files via a .. (dot dot) in the filename parameter in a ticket.download_attachment task.
Helpdesk Pro Project Helpdesk Pro
1 EDB exploit
8.1
CVSSv3
CVE-2015-4075
The Helpdesk Pro plugin prior to 1.4.0 for Joomla! allows remote malicious users to write to arbitrary .ini files via a crafted language.save task.
Helpdeskpro Helpdesk Pro
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
SSRF
buffer overflow
CVE-2023-28952
CVE-2023-41822
CVE-2024-27956
CVE-2023-7028
CVE-2024-34447
CVE-2024-34460
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started