VYPR

Ultimate Helpdesk

by Ultimate Helpdesk

CVEs (2)

  • CVE-2006-6381Dec 7, 2006
    risk 0.04cvss epss 0.09

    Directory traversal vulnerability in getfile.asp in Ultimate HelpDesk allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.

  • CVE-2006-6380Dec 7, 2006
    risk 0.03cvss epss 0.05

    Cross-site scripting (XSS) vulnerability in index.asp in Ultimate HelpDesk allows remote attackers to inject arbitrary web script or HTML via the keyword parameter.