Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Craftysyntax Subscribe
Filtered by product Crafty Syntax Live Help
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-3845 1 Craftysyntax 1 Crafty Syntax Live Help 2018-10-11 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in Crafty Syntax Live Help (CSLH) 2.14.6 and earlier allow remote attackers to execute arbitrary SQL commands via the department parameter to (1) is_xmlhttp.php and (2) is_flush.php.
CVE-2008-3840 1 Craftysyntax 1 Crafty Syntax Live Help 2018-10-11 5.0 MEDIUM N/A
Crafty Syntax Live Help (CSLH) 2.14.6 and earlier stores passwords in cleartext in a MySQL database, which allows context-dependent attackers to obtain sensitive information.