Helpbox

Layton Technology · 11 CVEs

CVE-2012-4977
MEDIUM

Layton Helpbox 4.4.0 allows remote attackers to discover cleartext credentials for the login page by sniffing the netwo…

Dec 12, 2012

CVE-2012-4976
MEDIUM

selectawasset.asp in Layton Helpbox 4.4.0 allows remote attackers to discover ODBC database credentials via an element=…

Dec 12, 2012

CVE-2012-4975
MEDIUM

editrequestuser.asp in Layton Helpbox 4.4.0 allows remote authenticated users to change arbitrary support-ticket data v…

Dec 12, 2012

CVE-2012-4974
MEDIUM

Layton Helpbox 4.4.0 allows remote authenticated users to change the login context and gain privileges via a modified (…

Dec 12, 2012

CVE-2012-4972
MEDIUM

Multiple cross-site scripting (XSS) vulnerabilities in Layton Helpbox 4.4.0 allow remote attackers to inject arbitrary…

Dec 12, 2012

CVE-2012-4971
HIGH

Multiple SQL injection vulnerabilities in Layton Helpbox 4.4.0 allow remote attackers to execute arbitrary SQL commands…

Dec 12, 2012

CVE-2007-5404
MEDIUM

Layton HelpBox 3.7.1 generates different responses depending on whether or not a username is valid in a failed login at…

Jan 9, 2008

CVE-2007-5403
LOW

Multiple cross-site scripting (XSS) vulnerabilities in Layton HelpBox 3.7.1 allow remote authenticated users to inject…

Jan 9, 2008

CVE-2007-5402
MEDIUM

Multiple SQL injection vulnerabilities in Layton HelpBox 3.7.1 allow (1) remote attackers to execute arbitrary SQL comm…

Jan 9, 2008

CVE-2007-5401
MEDIUM

Unrestricted file upload vulnerability in uploadrequest.asp in Layton HelpBox 3.7.1 allows remote authenticated users t…

Jan 9, 2008

CVE-2004-2551
HIGH

Multiple SQL injection vulnerabilities in Layton HelpBox 3.0.1 allow remote attackers to execute arbitrary SQL commands…

Nov 21, 2005

Showing 1 to 11 of 11 CVEs