5.8 Medium
AI Score
Confidence
High
0.028 Low
EPSS
Percentile
90.6%
Multiple cross-site scripting (XSS) vulnerabilities in newticket.php in DeskPRO 2.0.0 and 2.0.1 allow remote attackers to inject arbitrary web script or HTML via the (1) message or (2) subject parameter.
secunia.com/advisories/22991
www.osvdb.org/30671
www.securityfocus.com/bid/21248
www.vupen.com/english/advisories/2006/4676
www.zion-security.com/text/Mul_Vulnerability_DeskPro.txt
exchange.xforce.ibmcloud.com/vulnerabilities/30520