Filtered by vendor Phpjabbers
Subscriptions
Filtered by product Ticket Support Script
Subscriptions
Total
3 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2023-40766 | 1 Phpjabbers | 1 Ticket Support Script | 2024-11-21 | 9.8 Critical |
User enumeration is found in in PHPJabbers Ticket Support Script v3.2. This issue occurs during password recovery, where a difference in messages could allow an attacker to determine if the user is valid or not, enabling a brute force attack with valid users. | ||||
CVE-2023-40753 | 1 Phpjabbers | 1 Ticket Support Script | 2024-11-21 | 5.4 Medium |
There is a Cross Site Scripting (XSS) vulnerability in the message parameter of index.php in PHPJabbers Ticket Support Script v3.2. | ||||
CVE-2023-39776 | 1 Phpjabbers | 1 Ticket Support Script | 2024-11-21 | 9.8 Critical |
A File Upload vulnerability in PHPJabbers Ticket Support Script v3.2 allows attackers to execute arbitrary code via uploading a crafted file. |
Page 1 of 1.