Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Crafty Syntax Live Help Subscribe
Filtered by product Crafty Syntax Live Help
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-0848 1 Crafty Syntax Live Help 1 Crafty Syntax Live Help 2018-10-15 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in lostsheep.php in Crafty Syntax Live Help (CSLH) before 2.14.16, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: the versions claimed by the original researcher are probably incorrect.
CVE-2008-3510 1 Crafty Syntax Live Help 1 Crafty Syntax Live Help 2017-08-07 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in livehelp_js.php in Crafty Syntax Live Help (CSLH) 2.14.6 allows remote attackers to inject arbitrary web script or HTML via the department parameter.
CVE-2008-1183 1 Crafty Syntax Live Help 1 Crafty Syntax Live Help 2017-08-07 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in Crafty Syntax Live Help (CSLH) before 2.14.6 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) livehelp.php, (2) user_questions.php, and (3) leavemessage.php. NOTE: the lostsheep.php vector is covered by CVE-2008-0848.
CVE-2004-2355 1 Crafty Syntax Live Help 1 Crafty Syntax Live Help 2017-07-10 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in Crafty Syntax Live Help (CSLH) before 2.7.4 allows remote attackers to inject arbitrary web script or HTML via the name field of a livehelp or chat session.