Products: 2
    Vulnerabilities: 4
    Known Exploited: 0
    1
    Critical Level Threats
    1
    High Level Threats
    2
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2020-15948

    eGain Chat 15.5.5 allows XSS via the Name (aka full_name) field.

    Last Modified: Nov 21, 2024
    Published: Jul 28, 2021

    CVE-2019-17123

    The eGain Web Email API 11+ allows spoofed messages because the fromName and message fields (to /system/ws/v11/ss/email) are mishandled, as demonstrated by fromName header injection with a %0a or %0d character. (Also, the message parameter can have initial HTML comment characters.)

    Last Modified: Nov 21, 2024
    Published: Dec 13, 2019

    CVE-2019-13976

    eGain Chat 15.0.3 allows unrestricted file upload.

    Last Modified: Nov 21, 2024
    Published: Sep 04, 2019

    CVE-2019-13975

    eGain Chat 15.0.3 allows HTML Injection.

    Last Modified: Nov 21, 2024
    Published: Sep 04, 2019
    Items Per Page