Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
kayako vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2005-2460
Multiple cross-site scripting (XSS) vulnerabilities in Kayako liveResponse 2.x allow remote malicious users to inject arbitrary web script or HTML via the (1) username parameter or (2) name field when entering a session or sending a message.
Kayako Liveresponse 2.0
1 EDB exploit
NA
CVE-2007-2562
Cross-site scripting (XSS) vulnerability in index.php in Kayako eSupport 3.00.90 allows remote malicious users to inject arbitrary web script or HTML via the _m parameter.
Kayako Esupport 3.00.90
NA
CVE-2010-2912
SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote malicious users to execute arbitrary SQL commands via the _a parameter in a downloads action.
Kayako Esupport 3.70.02
2 EDB exploits
NA
CVE-2008-4761
Cross-site scripting (XSS) vulnerability in includes/htmlArea/plugins/HtmlTidy/html-tidy-logic.php in Kayako eSupport 3.20.2 allows remote malicious users to inject arbitrary web script or HTML via the jsMakeSrc parameter. NOTE: the provenance of this information is unknown; the ...
Kayako Esupport 3.20.2
1 EDB exploit
NA
CVE-2010-2911
SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote malicious users to execute arbitrary SQL commands via the newsid parameter in a viewnews action.
Kayako Esupport 3.70.02
2 EDB exploits
NA
CVE-2005-4637
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Kayako SupportSuite 3.00.26 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) nav parameter in the downloads module, (2) Full Name and (3) Email fields in the c...
1 EDB exploit
6.5
CVSSv3
CVE-2020-2500
This improper access control vulnerability in Helpdesk allows malicious users to get control of QNAP Kayako service. Attackers can access the sensitive data on QNAP Kayako server with API keys. We have replaced the API key to mitigate the vulnerability, and already fixed the issu...
Qnap Helpdesk
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4651
CVE-2024-34255
elevation of privilege
CVE-2024-25529
CVE-2024-4671
NULL pointer dereference
CVE-2024-25527
template injection
CVE-2008-0166
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3