Vulnerabilities (CVE)

Filtered by vendor Crafty Syntax Live Help Subscribe
Filtered by product Crafty Syntax Live Help
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-3510 1 Crafty Syntax Live Help 1 Crafty Syntax Live Help 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in livehelp_js.php in Crafty Syntax Live Help (CSLH) 2.14.6 allows remote attackers to inject arbitrary web script or HTML via the department parameter.
CVE-2008-1183 1 Crafty Syntax Live Help 1 Crafty Syntax Live Help 2024-02-04 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in Crafty Syntax Live Help (CSLH) before 2.14.6 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) livehelp.php, (2) user_questions.php, and (3) leavemessage.php. NOTE: the lostsheep.php vector is covered by CVE-2008-0848.
CVE-2008-0848 1 Crafty Syntax Live Help 1 Crafty Syntax Live Help 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in lostsheep.php in Crafty Syntax Live Help (CSLH) before 2.14.16, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: the versions claimed by the original researcher are probably incorrect.
CVE-2004-2355 1 Crafty Syntax Live Help 1 Crafty Syntax Live Help 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in Crafty Syntax Live Help (CSLH) before 2.7.4 allows remote attackers to inject arbitrary web script or HTML via the name field of a livehelp or chat session.