VendorsSiTrackersupport_incident_tracker3.67
Vulnerabilities

SiTracker Support Incident Tracker 3.67

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2019-20220
In Support Incident Tracker (SiT!) 3.67, the search_id parameter in the search_incidents_advanced.php page is affected by XSS.
Published 2020-01-02 · Modified
6.1EPSS 0.007
CVE-2019-20221
In Support Incident Tracker (SiT!) 3.67, Load Plugins input in the config.php page is affected by XSS. The XSS payload is, for example, executed on the about.php page.
Published 2020-01-02 · Modified
6.1EPSS 0.007
CVE-2019-20222
In Support Incident Tracker (SiT!) 3.67, the Short Application Name and Application Name inputs in the config.php page are affected by XSS.
Published 2020-01-02 · Modified
6.1EPSS 0.007
CVE-2019-20223
In Support Incident Tracker (SiT!) 3.67, the id parameter is affected by XSS on all endpoints that use this parameter, a related issue to CVE-2012-2235.
Published 2020-01-02 · Modified
6.1EPSS 0.007