Skip to content
Noroxi

deskpro records

13 published records for vendor deskpro.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

13 records
  • An issue was discovered in Deskpro before 2019.8.0.

    HighCVSS 8.8No exploitEPSS 2%

    deskpro · deskproApr 1, 2020

  • An issue was discovered in Deskpro before 2019.8.0.

    HighCVSS 7.5No exploitEPSS 2%

    deskpro · deskproApr 1, 2020

  • An issue was discovered in Deskpro before 2019.8.0.

    HighCVSS 7.2No exploitEPSS 4%

    deskpro · deskproApr 1, 2020

  • Server Side Request Forgery vulnerability found in Deskpro Support Desk v2021.21.6 allows attackers to execute arbitrary code via a crafted

    HighCVSS 7.2No exploitEPSS 1%

    deskpro · deskproJul 21, 2023

  • CVE-2006-6159
    27Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in newticket.php in DeskPRO 2.0.0 and 2.0.1 allow remote attackers to inject arbitrary w

    MediumCVSS 6.8No exploitEPSS 1%

    deskpro · deskproNov 28, 2006

  • Deskpro Cloud Platform and on-premise 2020.2.3.48207 from 2020-07-30 contains a cross-site scripting (XSS) vulnerability that can lead to an

    MediumCVSS 5.4No exploitEPSS 1%

    deskpro · deskproMay 12, 2021

  • Deskpro cloud and on-premise Deskpro 2021.1.6 and fixed in Deskpro 2021.1.7 contains a cross-site scripting (XSS) vulnerability in social me

    MediumCVSS 5.4No exploitEPSS 1%

    deskpro · deskproSep 7, 2021

  • Deskpro cloud and on-premise Deskpro 2021.1.6 and fixed in Deskpro 2021.1.7 contains a cross-site scripting (XSS) vulnerability in the downl

    MediumCVSS 5.4No exploitEPSS 1%

    deskpro · deskproSep 8, 2021

  • CVE-2003-0874
    20Monitor

    Multiple SQL injection vulnerabilities in DeskPRO 1.1.0 and earlier allow remote attackers to insert arbitrary SQL and conduct unauthorized

    MediumCVSS 5.0No exploitEPSS 1%

    deskpro · deskproNov 17, 2003

  • CVE-2007-2011
    18Monitor

    Cross-site scripting (XSS) vulnerability in login.php in DeskPro 2.0.1 allows remote attackers to inject arbitrary web script or HTML via th

    MediumCVSS 4.3Proof of conceptEPSS 2%

    deskpro · deskproApr 12, 2007

  • An issue was discovered in Deskpro before 2019.8.0.

    MediumCVSS 4.3No exploitEPSS 1%

    deskpro · deskproApr 1, 2020

  • An issue was discovered in Deskpro before 2019.8.0.

    MediumCVSS 4.3No exploitEPSS 1%

    deskpro · deskproApr 1, 2020

  • CVE-2007-1012
    17Monitor

    Cross-site scripting (XSS) vulnerability in faq.php in DeskPRO 1.1.0 allows remote attackers to inject arbitrary web script or HTML via the

    MediumCVSS 4.3No exploitEPSS 1%

    deskpro · deskproFeb 21, 2007