Перейти к содержимому
Noroxi

Записи livezilla

21 опубликованных записей вендора livezilla.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
2
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

21 записей
  • CVE-2013-6225
    47В плане

    LiveZilla 5.0.1.4 has a Remote Code Execution vulnerability

    КритическаяCVSS 9,8Proof of conceptEPSS 27 %

    livezilla · livezilla13 янв. 2020 г.

  • CVE-2020-9758
    39Наблюдать

    An issue was discovered in chat.php in LiveZilla Live Chat 8.0.1.3 (Helpdesk).

    КритическаяCVSS 9,6Proof of conceptEPSS 2 %

    livezilla · livezilla9 мар. 2020 г.

  • CVE-2019-12960
    39Наблюдать

    LiveZilla Server before 8.0.1.1 is vulnerable to SQL Injection in functions.internal.build.inc.php via the parameter p_dt_s_d.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    livezilla · livezilla25 июн. 2019 г.

  • CVE-2019-12939
    39Наблюдать

    LiveZilla Server before 8.0.1.1 is vulnerable to SQL Injection in server.php via the p_ext_rse parameter.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    livezilla · livezilla24 июн. 2019 г.

  • CVE-2019-12961
    35Наблюдать

    LiveZilla Server before 8.0.1.1 is vulnerable to CSV Injection in the Export Function.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    livezilla · livezilla25 июн. 2019 г.

  • CVE-2013-7034
    30Наблюдать

    The setCookieValue function in _lib/functions.global.inc.php in LiveZilla before 5.1.2.1 allows remote attackers to execute arbitrary PHP co

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    livezilla · livezilla5 мая 2014 г.

  • CVE-2019-12962
    27Наблюдать

    LiveZilla Server before 8.0.1.1 is vulnerable to XSS in mobile/index.php via the Accept-Language HTTP header.

    СредняяCVSS 6,1Proof of conceptEPSS 9 %

    livezilla · livezilla25 июн. 2019 г.

  • CVE-2013-7385
    27Наблюдать

    LiveZilla 5.1.2.1 and earlier includes the MD5 hash of the operator password in plaintext in Javascript code that is generated by lz/mobile/

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    livezilla · livezilla19 мая 2014 г.

  • CVE-2017-15869
    24Наблюдать

    Cross-site scripting (XSS) vulnerability in knowledgebase.php in LiveZilla before 7.0.8.9 allows remote attackers to inject arbitrary web sc

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    livezilla · livezilla18 янв. 2018 г.

  • CVE-2019-12963
    24Наблюдать

    LiveZilla Server before 8.0.1.1 is vulnerable to XSS in the chat.php Create Ticket Action.

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    livezilla · livezilla25 июн. 2019 г.

  • CVE-2019-12964
    24Наблюдать

    LiveZilla Server before 8.0.1.1 is vulnerable to XSS in the ticket.php Subject.

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    livezilla · livezilla25 июн. 2019 г.

  • CVE-2018-10810
    24Наблюдать

    chat/mobile/index.php in LiveZilla Live Chat 7.0.9.5 and prior is affected by Cross-Site Scripting via the Accept-Language HTTP header.

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    livezilla · livezilla16 мая 2018 г.

  • CVE-2019-12940
    23Наблюдать

    LiveZilla Server before 8.0.1.1 is vulnerable to Denial Of Service (memory consumption) in knowledgebase.php via a large integer value of th

    СредняяCVSS 5,9Эксплойта нетEPSS 1 %

    livezilla · livezilla24 июн. 2019 г.

  • CVE-2013-6224
    18Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in LiveZilla before 5.1.1.0 allow remote attackers to inject arbitrary web script or HTM

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    livezilla · livezilla10 дек. 2013 г.

  • CVE-2013-7003
    18Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in LiveZilla before 5.1.2.0 allow remote attackers to inject arbitrary web script or HTM

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    livezilla · livezilla5 мая 2014 г.

  • CVE-2013-7032
    18Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in the web based operator client in LiveZilla before 5.1.2.1 allow remote attackers to i

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    livezilla · livezilla14 февр. 2014 г.

  • CVE-2010-4276
    18Наблюдать

    Cross-site scripting (XSS) vulnerability in the lz_tracking_set_sessid function in templates/jscript/jstrack.tpl in LiveZilla 3.2.0.2 allows

    СредняяCVSS 4,3Proof of conceptEPSS 2 %

    livezilla · livezilla30 дек. 2010 г.

  • CVE-2009-4450
    17Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in map.php in LiveZilla 3.1.8.3 allow remote attackers to inject arbitrary web script or

    СредняяCVSS 4,3Proof of conceptEPSS 1 %

    livezilla · livezilla29 дек. 2009 г.

  • CVE-2013-7002
    17Наблюдать

    Cross-site scripting (XSS) vulnerability in mobile/php/translation/index.php in LiveZilla before 5.1.1.0 allows remote attackers to inject a

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    livezilla · livezilla20 дек. 2013 г.

  • CVE-2013-7033
    17Наблюдать

    LiveZilla before 5.1.2.1 includes the operator password in plaintext in Javascript code that is generated by lz/mobile/chat.php, which might

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    livezilla · livezilla19 мая 2014 г.

  • CVE-2013-6223
    8Наблюдать

    LiveZilla before 5.1.1.0 stores the admin Base64 encoded username and password in a 1click file, which allows local users to obtain access b

    НизкаяCVSS 2,1Эксплойта нетEPSS 0 %

    livezilla · livezilla9 июн. 2014 г.