Kayako LiveResponse Multiple Input...

- AV AC AU C I A
发布: 2005-07-30
修订: 2025-04-13

Kayako LiveResponse is prone to multiple cross-site scripting, SQL injection, and HTML injection vulnerabilties. These issues are all related to input validation errors. The cross-site scripting and HTML injection vulnerabilities may allow for theft of cookie-based authentication credentials or other attacks. The SQL injection vulnerabilities may permit a remote attacker to compromise the software or launch attacks other attacks against the database.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息