VendorsSolarwindsweb_help_desk12.7.0
Vulnerabilities

Solarwinds Web Help Desk 12.7.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2019-16956
SolarWinds Web Help Desk 12.7.0 allows XSS via the Request Type parameter of a ticket.
Published 2021-01-04 · Modified
5.4EPSS 0.017
CVE-2019-16961
SolarWinds Web Help Desk 12.7.0 allows XSS via a Schedule Name.
Published 2021-01-15 · Modified
5.4EPSS 0.015
CVE-2019-16960
SolarWinds Web Help Desk 12.7.0 allows XSS via a CSV template file with a crafted Location Name field.
Published 2021-01-04 · Modified
5.4EPSS 0.013
CVE-2019-16954
SolarWinds Web Help Desk 12.7.0 allows HTML injection via a Comment in a Help Request ticket.
Published 2021-01-06 · Modified
5.4EPSS 0.013